educational

The Master Keys to the New Mastercard Rules

The Master Keys to the New Mastercard Rules

UPDATE: Since the time of writing this column, Segpay heard from Mastercard, who wanted to clarify a few issues related to the rules beginning on October 15, 2021 that were highlighted in the column below. When it comes to consent, the merchant has to verify the uploader and the uploader has to gather consent from the participants. Live stream video needs to have tools or a team in place to moderate and review content. All content uploaded from October 15, 2021 going forward needs to be verified. Anything before that date can be verified, but is not required to be.

It’s been a hot topic this year and now we’re just over a month away from the new Mastercard regulations taking effect. The official date when enforcement begins is October 15, 2021, but many of you have likely felt the impact of the new regulations already. Banks started to implement new policies and requirements well before the enforcement start date to ensure compliance.

These new guidelines will impact all merchants in the high-risk industry and heavily focus on merchants and platforms that support user-generated content.

These new guidelines will impact all merchants in the high-risk industry and heavily focus on merchants and platforms that support user-generated content. This month, we break down the three keys to understanding Mastercard’s latest user-generated content regulations.

THE MASTER PLAN

As a refresher, these new guidelines impact all merchants in our industry and are specifically focused on premium social media sites, tube sites, cam sites and voyeur programs. They include:

  • Entering into a written agreement with any individual that is contributing content to the website. This includes the individual’s consent, their identity and age.
  • All persons depicted in the content must give consent for the content to be distributed and downloaded.
  • Age and identity of all persons depicted is required.
  • Only verified users can be permitted to upload content.
  • All content must be reviewed prior to publication or in real-time if it’s live-streamed, and no content can violate the Card Brand Business or Risk Assessment and Mitigation (BRAM) policies.
  • Make sure content moderation policies and internal policies outlining age verification are in place.

All merchants must adhere to the following:

  • Websites must have a complaint process or take-down link for individuals to request content to be removed or notification of violating content.
  • You must provide monthly reports to the acquirer or payment facilitator of flagged content and share what was taken down.
  • No search terms or marketing partners can give the illusion that the content they are marketing will contain child exploitation materials or depictions of non-consensual activity.
  • Have policies in place to make sure that the website cannot be used for human trafficking.

RULE RETROSPECTIVE

Questions have been circulating about user-uploaded content for months; many are wondering about what happens to content that was uploaded or produced before the October 15 enforcement date. The answer is that all content, whether produced before or after October 15, must conform to the new guidelines.

So, if you do not have a written agreement from the user, nor have you validated the ID of the performer appearing in the content prior to October 15, 2021, you must reach out and gather their consent and validate their ID.

RISKY BUSINESS

Where things are getting a little tricky, is that the new guidelines released in April are still the guidelines our acquirers are putting policies in place to manage. The problem is that each acquirer has its own interpretation of how those policies should be implemented. So, if you work with multiple banks or multiple payment facilitators, we are all interpreting the guidelines and putting in place requirements for merchants to manage.

For example, at Segpay we work with seven different acquirers that span the U.S. and Europe and each of our partners requires that we comply in a different way. Compliance usually comes in the form of a questionnaire outlining the new requirements, which we will need to send to each of our merchants to complete and confirm their compliance with a signature. Many of these acquirers are asking for supporting merchant policies for age verification, content moderation and human trafficking. In addition, we will be rolling out a form for each of our merchants to report its take-down requests and how they were handled monthly. That’s because our goal is to simplify the process by consolidating all of our acquirers’ interpretations of the rules into a single questionnaire.

With one month left, the implementation of the new regulations is still a bit of a work in progress. As we all work to get into compliance, I am sure there will be some give-and-take with Mastercard and our acquirers to help smooth out the process and answer the unknowns.

Of course, just when we think we have understood and achieved Mastercard’s compliance requirements, we have new Visa regulations coming out regarding user-generated content, also expected in October! The good news is that we have faced numerous new regulations over the years, and we have always managed to understand them and comply, with a team in place to stay on top of navigating this ever-changing world.

To read the new Mastercard regulations in full, be sure to visit the following link: https://tinyurl.com/segpay

Cathy Beardsley is president and CEO of Segpay, a global leader in merchant services offering a wide range of custom financial solutions including payment facilitator, direct merchant accounts and secure gateway services. Under her direction, Segpay has become one of four companies approved by Visa to operate as a high-risk internet payment services provider. Segpay offers secure turnkey solutions to accept online payments, with a guarantee that funds are always safe and protected with its proprietary Fraud Mitigation System and customer service and support. For any questions or help, contact sales@segpay.com or compliance@segpay.com.

Related:  

Copyright © 2025 Adnet Media. All Rights Reserved. XBIZ is a trademark of Adnet Media.
Reproduction in whole or in part in any form or medium without express written permission is prohibited.

More Articles

profile

WIA Profile: Reba Rocket

As chief operating officer and chief marketing officer of Takedown Piracy, long at the forefront of intellectual property protection in adult entertainment, Rocket is dedicated to safeguarding the livelihoods of content creators and producers while fostering a more ethical and sustainable industry.

Women In Adult ·
opinion

Protecting Content Ownership Rights When Using AI

In today’s digital age, content producers have more tools at their disposal than ever before. Among these tools, artificial intelligence (AI) content generation has emerged as a game changer, enabling creators to produce high-quality content quickly and efficiently.

Corey D. Silverstein ·
opinion

How Payment Orchestration Can Help Your Business

An emerging payment solution is making waves in the merchant world: the payment orchestration platform (POP). It’s quickly gaining traction as a powerful tool for managing online payments — but questions abound.

Cathy Beardsley ·
opinion

Fine-Tuning Refund and Cancellation Policies

For adult websites, managing refunds and cancellations isn’t just about customer service. It’s a crucial factor in maintaining compliance with the regulations of payment processors and payment networks such as Visa and Mastercard.

Jonathan Corona ·
profile

WIA Profile: Laurel Bencomo

Born in Cambridge, England but raised in Spain, Laurel Bencomo initially chose to study business at the University of Barcelona simply because it felt familiar — both of her parents are entrepreneurs. She went on to earn a master’s degree in sales and marketing management at the EADA Business School, while working in events for a group of restaurants in Barcelona.

Women In Adult ·
profile

Gregory Dorcel on Building Upon His Brand's Signature Legacy

“Whether reflected in the storyline or the cast or even the locations, the entertainment we deliver is based on fantasy,” he elaborates. “Our business is not, and never has been, reality. People who are buying our content aren’t expecting reality, or direct contact with stars like you can have with OnlyFans,” he says.

Jeff Dana ·
opinion

How to Turn Card Brand Compliance Into Effective Marketing

In the adult sector, compliance is often treated as a gauntlet of mandatory checkboxes. While it’s true that those boxes need to be ticked and regulations must be followed, sites that view compliance strictly as a chore risk missing out on a bigger opportunity.

Jonathan Corona ·
opinion

A Look at the Latest AI Tools for Online Safety

One of the defining challenges for adult businesses is helping to combat the proliferation of illegal or nonconsensual content, as well as preventing minors from accessing inappropriate or harmful material — all the more so because companies or sites unable or unwilling to do so may expose themselves to significant penalties and put their users at risk.

Gavin Worrall ·
opinion

Know When to Drop Domains You Don't Need

Do you own too many domains? If so, you’re not alone. Like other things we accumulate, every registered domain means something to us. Sometimes a domain represents a dream project we have always wanted to do but have never quite gotten around to.

Juicy Jay ·
opinion

Understanding 'Indemnification' in Business Contracts

Clients frequently tell me that they didn’t understand — or sometimes, even read — certain portions of a contract because those sections appeared to be just “standard legalese.” They are referring, of course, to the specialized language used in legal documents, including contracts.

Corey D. Silverstein ·
Show More