Workflow
支付安全
icon
Search documents
“免密支付”:如何平衡安全与便捷
Jin Rong Shi Bao· 2025-11-26 00:56
我在哪些平台开通了"免密支付"?怎么关掉它?如何防范免密支付风险? 此外,淘宝、京东、拼多多等购物平台以及各类视频、外卖、出行App中,也常有类似的授权服 务,建议定期进入"支付设置"中检查,及时查看"免密支付"授权。 对于我们普通人来讲,如何防范"免密支付"风险?要记住这三招,守好"钱袋子":一是定期清理授 权,非必要不开通。养成定期检查"免密支付"和自动续费服务的习惯,对不常用、不信任的服务及时关 闭相关服务。如果不是高频使用场景,可以选择不开启"免密支付",尤其是老年人、未成年人使用的账 户。 二是强化手机设备和账号安全防护。通过设置复杂密码并定期更换,开启双重验证等方式提高安全 防护水平。同时,要提高风险识别能力,警惕营销陷阱,避免在公共设备留存支付信息。 ——网友"薯条儿" 坐公交"嘀"一声购票、便利店随手一刷买单、视频会员自动续费不中断……你有没有发现,现在花 钱越来越"无感"了。随着移动支付的普及,"免密支付"因其高度便捷性,成为不少人的支付首选。 轻轻一点,无须输密码,交易瞬间完成,确实省时又省心,但方便的背后,也藏着不少"坑"。有网 友吐槽,家里老人误触开通"免密支付",月底对账时才发现"悄 ...
瞭望 | 系紧“免密支付”安全带
Xin Hua She· 2025-11-25 02:59
作为"免密支付"业务的核心责任方,支付服务主体应积极响应倡议,落实安全管理要求,确保不得默认 开启、关闭必须便捷,以充分保障用户对"免密支付"的知情权和选择权。同时可通过风险模型搭建、大 数据分析等技术不断提升风险管控能力,特别是出现用户交易模式与日常消费习惯不符等异常情况时, 应及时进行拦截或要求二次验证,以防范用户资金损失风险。 监管部门则可在行业倡议基础上,强化常态性监管和专项整治,通过技术监测、投诉溯源、随机抽查等 方式,加大违法违规行为打击力度。 广大用户也需主动提升支付安全意识,对不熟悉的弹窗和协议等保持审慎,守护好自身财产安全。 文 | 翟天旸 张冉燃 近日,中国支付清算协会针对"免密支付"业务安全管理发布倡议,包括支付服务主体杜绝默认开通、提 供一键取消功能,以及用户增强安全防范意识等。这为平衡支付便利与资金安全提供了切实可行的行业 指引。 "免密支付"通过简化支付流程,缩短了用户的交易时间、提升了支付体验,也在一定程度上帮助商户提 高了结账效率和客流周转率。但部分支付服务主体在业务安全管理方面还存在提升空间,一些用户也还 存在安全意识薄弱的情况,由此引发的不知情扣费、退款困难等,逐渐成为困扰 ...
守好支付安全闸门!中国支付清算协会发声规范“免密支付”,杜绝默认开通行为
Xin Lang Cai Jing· 2025-11-14 01:28
Core Viewpoint - The rise of "no-password payment" has significantly enhanced convenience in mobile payments, but it also raises serious concerns regarding security risks, including unauthorized transactions and default activation traps, prompting regulatory scrutiny and consumer complaints [1][5][10]. Summary by Relevant Sections User Authorization - The China Payment and Clearing Association emphasizes the need for strict identity verification during user authorization to prevent default activation of "no-password payment" services. It calls for clear confirmation of user intent and agreement to the service terms, especially for vulnerable groups like the elderly [3][4]. Merchant Risk Management - The association advises payment service providers to assess merchant risk based on their business operations and to set transaction limits for "no-password payment" to mitigate risks associated with high-risk merchants [3]. Transaction Monitoring - Enhanced transaction monitoring through risk modeling and big data analysis is recommended to identify and intercept unusual transaction patterns, thereby protecting users from potential financial losses [3][4]. User Rights Protection - Payment service providers are urged to establish efficient complaint handling processes and to offer easy cancellation options for users wishing to discontinue "no-password payment." Additionally, proactive communication regarding transaction details is recommended, particularly for elderly users [4][6]. Consumer Complaints - As of November 13, the number of complaints related to "no-password payment" has reached 54,900, highlighting issues such as unauthorized activation and unexpected charges. Many users report being unaware of their enrollment in such services until they notice deductions from their accounts [5][6][10]. Vulnerable Groups - Children and the elderly are identified as particularly vulnerable to the pitfalls of "no-password payment," with reports of unauthorized transactions occurring without parental consent or due to accidental activations [7][8]. Regulatory Attention - The potential risks associated with "no-password payment" have drawn significant attention from regulatory bodies, leading to calls for improved consumer protection measures and heightened awareness of the risks involved [10][11]. Recommendations for Consumers - Consumers are advised to adopt a cautious approach by disabling "no-password payment" features unless absolutely necessary, regularly reviewing their payment authorizations, and enhancing their account security measures [11].
“免密支付”怎么关闭?记者多平台实测:一步开通,关掉步骤繁琐
Mei Ri Jing Ji Xin Wen· 2025-11-13 22:32
Core Viewpoint - The China Payment and Clearing Association has emphasized the need for enhanced security management in "no-password payment" services, highlighting existing vulnerabilities in both service providers and user awareness [1][3]. Group 1: Security Management Recommendations - The association advocates for payment service providers to strengthen security management for "no-password payment" by eliminating default activation, offering limit management features, and prominently providing a one-click cancellation option [3][20]. - Users are encouraged to regularly check their agreements for no-password payment services [3]. Group 2: User Experience and Feedback - Users have reported difficulties in canceling no-password payment services, with an average of 5 to 6 page jumps required on various platforms to deactivate the service [4][6]. - Many users have expressed frustration on social media about unintentionally activating no-password payment due to misleading interfaces or accidental clicks [5][6]. Group 3: Payment Limits and Merchant Practices - Different merchants have varying single transaction limits for no-password payments, with platforms like Xiaohongshu allowing up to 1,000 yuan, while others like Xianyu only support transactions below 100 yuan [8][9]. - Some platforms impose daily limits on the number of no-password transactions, enhancing security through transaction restrictions [9]. Group 4: Safety Concerns and Comparisons - Concerns regarding the safety of no-password payments include risks associated with lost devices and erroneous transactions, similar to issues previously raised about traditional bank card no-password payments [11][12]. - The security of no-password payments is supported by multiple safeguards, including chip card technology, trusted merchant selection, transaction limits, intelligent risk control, and full compensation for verified losses [12][14]. Group 5: User Choice and Functionality - The functionality of no-password payments is deemed reasonable in high-frequency, low-value transaction scenarios, where entering a password can hinder user experience [16][20]. - The emphasis is placed on respecting user choice, with a call for platforms to avoid default selections that may lead to unintended activations [15][20].
你知道“免密支付”怎么关闭吗?记者多平台实测:一步开通,平均要五六步才关掉
Mei Ri Jing Ji Xin Wen· 2025-11-13 16:24
Core Viewpoint - The China Payment and Clearing Association has issued an initiative to enhance the security management of "no-password payment" services, highlighting the need for improved safety measures and user awareness in this area [1][2]. Group 1: Security Management Recommendations - Payment service providers are encouraged to strengthen security management for "no-password payment" by eliminating default activation, providing limit management features, and prominently offering a one-click cancellation option [3]. - Users are advised to regularly check their agreements regarding "no-password payment" services [3]. Group 2: User Experience and Feedback - Users have expressed frustration on social media about unintentionally activating "no-password payment" due to misleading prompts or accidental clicks, and they often struggle to find ways to deactivate this service [4][5]. - Testing revealed that deactivating "no-password payment" on popular platforms requires multiple page navigations, averaging 5 to 6 clicks, which complicates the process for users [5][6]. Group 3: Payment Limits and Security Concerns - Different merchants have varying single transaction limits for "no-password payment," with some platforms allowing limits as high as 1,000 yuan, while others restrict transactions to under 100 yuan [7]. - Concerns regarding the security of "no-password payment" include risks associated with lost devices and erroneous transactions, which could lead to unauthorized deductions from accounts [8]. Group 4: Comparison with Traditional Payment Methods - Traditional bank cards with "no-password payment" features have established security measures, including chip technology, merchant vetting, transaction limits, intelligent risk control, and full compensation for losses due to fraud [9][10][11]. - The underlying security mechanisms of mobile wallets like Alipay and WeChat Pay differ from traditional bank cards, relying more on their own risk control systems rather than external card organization rules [12]. Group 5: User Choice and Functionality - Experts argue that "no-password payment" can be beneficial in high-frequency, low-value transaction scenarios, as it enhances user experience by reducing the need for repetitive password entry [12][13]. - The emphasis is placed on respecting user choice, with calls for payment platforms to avoid default selections and ensure clear communication regarding activation and deactivation of "no-password payment" features [16].
中国支付清算协会倡议“免密支付”不得默认开通 记者多平台实测:一步开通,N步才关闭
Mei Ri Jing Ji Xin Wen· 2025-11-13 16:02
Core Viewpoint - The China Payment and Clearing Association has emphasized the need for enhanced security management of "no-password payment" services, highlighting existing gaps in both service providers' security measures and users' awareness of security risks [1][4]. Group 1: Security Management Recommendations - The association advocates for payment service providers to strengthen security management of "no-password payment" by eliminating default activation, providing limit management features, and prominently offering a one-click cancellation option [4][20]. - Users are encouraged to regularly check their agreements regarding no-password payment services [4]. Group 2: User Experience and Challenges - Users have reported difficulties in canceling no-password payment services, often requiring multiple page navigations within apps to do so, with an average of 5 to 6 page jumps noted across various platforms [5][6][7]. - Many users express frustration over inadvertently activating no-password payment features due to misleading interfaces or accidental clicks during transactions [5]. Group 3: Payment Security Concerns - The convenience of no-password payments is countered by potential security risks, such as unauthorized access if a mobile device is lost or incorrect charges due to scanning errors [9][10]. - Traditional bank cards also offer no-password payment options, which have been widely accepted, but concerns about security have been raised in the past [10][13]. Group 4: Safety Mechanisms - Bank card no-password payments are secured through multiple layers, including chip technology, merchant vetting, transaction limits, intelligent risk control, and full compensation for verified losses [11][12][13]. - In contrast, third-party payment platforms like Alipay and WeChat rely on their risk control systems, which assess factors such as device usage and transaction location to ensure security [13][14]. Group 5: User Choice and Functionality - The discussion around no-password payments emphasizes the importance of respecting user choice, with calls for clearer communication during activation and easier cancellation processes [20]. - Experts suggest that while no-password payments can enhance user experience in high-frequency, low-value transactions, the design should prioritize user consent and awareness [14][20].
事关“免密支付” ,中国支付清算协会发声
券商中国· 2025-11-12 09:02
Core Viewpoint - The rapid development and widespread application of mobile payment technology have led to the rise of "no-password payment" services, which simplify payment processes and enhance user experience, but also highlight the need for improved security management by payment service providers and increased user awareness of security risks [1][2]. Group 1: Recommendations for Payment Service Providers - Payment service providers should strengthen security management for "no-password payment" services by ensuring user consent and identity verification during the activation process, avoiding default activation, and safeguarding user rights [1]. - There should be enhanced risk management for merchants, including setting transaction limits based on merchant characteristics and risk profiles to prevent high-risk merchants from offering "no-password payment" services [2]. - Continuous monitoring of transaction activities is essential to detect anomalies in user spending patterns, allowing for timely intervention to prevent potential financial losses [2]. Group 2: User Awareness and Protection - Users are encouraged to enhance their security awareness by implementing measures such as enabling two-factor authentication and regularly changing passwords to protect their mobile devices and accounts [4]. - Users should improve their ability to identify risks, remain vigilant against marketing traps, and avoid storing payment information on public devices [4]. - Regular checks on "no-password payment" agreements and transaction alerts are recommended, allowing users to freeze or close accounts promptly upon detecting any irregularities [4].
中国支付清算协会倡议:杜绝默认开通“免密支付”
Core Viewpoint - The China Payment and Clearing Association has issued an initiative to regulate "no-password payment" services, emphasizing the protection of user rights and the need for strict identity verification during the user activation process [1] Group 1: User Activation and Identity Verification - The initiative calls for strict verification of user identity information during the activation phase of "no-password payment" services [1] - Users must clearly confirm their intention to activate the service and sign the "no-password payment" agreement, eliminating default activation practices [1] Group 2: Special Considerations for Elderly Users - A comprehensive assessment of elderly users' risk preferences and capacity to handle the service is required [1] - Core terms of the service must be prominently displayed to ensure elderly users are fully informed before activation [1] Group 3: User Control and Information Access - Users should be provided with a convenient option to deactivate the "no-password payment" feature if they choose not to continue using it [1] - The initiative includes provisions for real-time or periodic notifications regarding "no-password payment" transactions, along with easy access to related information and a one-click cancellation feature [1]
中国支付清算协会:杜绝默认开通“免密支付” ,提供一键取消功能
第一财经· 2025-11-12 05:51
Core Viewpoint - The rapid development and widespread application of mobile payment technology have led to the rise of "no-password payment" services, which simplify payment processes and enhance user experience. However, there are concerns regarding security management among payment service providers and users' awareness of security risks [3]. Group 1: Recommendations for Payment Service Providers - Payment service providers should strengthen the security management of "no-password payment" services by ensuring proper authorization management and confirming users' true intentions during the activation process [4]. - It is essential to enhance merchant risk management by setting reasonable limits on "no-password payment" services based on the merchant's business conditions and risk information [5]. - Providers should improve transaction monitoring to prevent financial loss risks by utilizing risk models and big data analysis to identify and address unusual transaction patterns [5]. Group 2: User Awareness and Protection - Users are encouraged to enhance their security awareness by implementing measures such as enabling two-factor authentication and regularly changing passwords [7]. - Users should be vigilant about marketing traps and avoid saving payment information on public devices to improve risk identification capabilities [7]. - Regular checks on "no-password payment" agreements and prompt actions to freeze or close accounts upon detecting anomalies are recommended for users [7].
中国支付清算协会:杜绝默认开通“免密支付” 提供一键取消功能
Yang Shi Xin Wen· 2025-11-12 05:05
一是强化手机设备和账号安全防护,可通过启用双重验证或定期更换密码等方式提高安全防护水平; 三是加强交易环节监测,防范资金损失风险。通过风险模型搭建、大数据分析等技术不断提升风险管控 能力。当用户的交易模式与日常消费习惯发生不符等异常情况时,及时进行拦截或二次验证,防范用户 资金损失风险。 四是加强用户权益保护。提供高效的投诉处理流程,切实保障用户权益。若用户不再继续使用"免密支 付"功能,为用户提供便捷的关闭通道。根据老年人的实际需求,实时或定期主动推送"免密支付"交易 相关信息,在显著位置提供相关信息一键查询功能,提供"免密支付"一键取消功能。 五是做好业务跟踪与规范,重点关注资金损失、服务纠纷等情况,并及时妥善予以处理。 中国支付清算协会还提示用户增强安全防范意识: 记者今天(12日)从中国支付清算协会了解到,随着移动支付技术的快速发展和广泛应用,"免密支 付"业务通过简化支付流程,大幅缩短了交易时间,提升了用户的支付体验。在提高便捷性的同时,部 分支付服务主体在业务安全管理方面还存在提升空间,一些用户也存在安全意识薄弱的情况。为进一步 规范"免密支付"业务开展,切实保护用户权益,中国支付清算协会向支付服 ...