Core Viewpoint - The rapid development and widespread application of mobile payment technology have led to the rise of "no-password payment" services, which simplify payment processes and enhance user experience, but also highlight the need for improved security management by payment service providers and increased user awareness of security risks [1][2]. Group 1: Recommendations for Payment Service Providers - Payment service providers should strengthen security management for "no-password payment" services by ensuring user consent and identity verification during the activation process, avoiding default activation, and safeguarding user rights [1]. - There should be enhanced risk management for merchants, including setting reasonable limits for "no-password payment" services based on merchant risk profiles and business characteristics [2]. - Continuous monitoring of transaction activities is essential to prevent financial losses, utilizing risk models and big data analysis to identify and address unusual transaction patterns [2]. Group 2: User Awareness and Protection - Users are encouraged to enhance their security awareness by implementing measures such as enabling two-factor authentication and regularly changing passwords [4]. - Users should be vigilant against marketing traps and avoid saving payment information on public devices, as well as regularly checking their "no-password payment" agreements and transaction alerts [4]. - Payment service providers should offer efficient complaint handling processes and easy options for users to deactivate "no-password payment" features if they choose to discontinue use [2].
事关免密支付 ,中国支付清算协会发声
21世纪经济报道·2025-11-12 08:17