educational

Beware of Card Brand Violations for Bad Affiliate Actions

Beware of Card Brand Violations for Bad Affiliate Actions

Card brand regulations are always changing. Some of the most recent changes came last October from Mastercard, focusing on adult content merchants. The revised standards, known as AN 5196, require that merchants have effective controls in place to monitor, block, and where necessary, take down content as appropriate. The standards laid out specific requirements for all adult content merchants and additional requirements for merchants who allow third parties to upload or generate content.

When these new regulations were initially announced over a year ago, in April 2021, a lot of the concern from industry professionals centered around age verification of models and content creators, along with the need to moderate user-uploaded content prior to publication. However, one portion of the regulations may not have received as much attention as it should have. It states, “The merchant must not market the content of its website or permit content search terms to give the impression that the content contains child exploitation materials or the depiction of nonconsensual activities.” It then goes on to state, “The merchant must not attract users to its website by utilizing adult content that is illegal or otherwise violates the standards.”

No one wants to be called out for a violation, let alone be at the center of a content investigation. Be proactive and take the time to put in place a checklist to help you always remain in compliance.

Mastercard’s compliance program is constantly looking for anything that might put the brand at risk. These standards are designed not only to protect Mastercard’s brand but also to protect the entire online payment ecosystem and ensure that the Mastercard network is not used to facilitate illegal activity. Even those who are diligent in following these regulations have sometimes found themselves at the center of a Mastercard investigation. This month, we want to share what to watch out for, how to keep yourself out of the spotlight and what you need to know to always remain compliant.

COMPLIANCE CAUTION SIGNS

In the last month, two of our acquirers reached out to us regarding investigations of two of our merchants by BRAM, Mastercard’s Business Risk Assessment and Mitigation program governing compliance. The merchants’ content had been uploaded to a large, popular tube site with titles implying that the content was nonconsensual. Upon a deep dive, it turned out that neither merchant was aware that their content had been uploaded to the tube site, that the wording of the titles had been changed, or that the content had been edited to focus on what appeared to be nonconsensual activities. Despite this, they are technically still responsible for the activity.

Working with the merchants, we were able to provide an appropriate response to our acquirers and to Mastercard. We were also able to confirm that the merchants were in compliance with Mastercard standards, and we had proof of monthly URL scanning, model releases, contracts and other items to validate that we had thoroughly vetted our merchants and maintained ongoing oversight of the content. We still don’t have an official response as to the outcome of these investigations, but the risks of noncompliance are high. Noncompliance assessments can result in penalties of $200,000, or $2,500 a day, and depending on the severity could result in termination of an account.

REMAIN IN REGULATION

Now that we have highlighted the types of issues being investigated, how can you remain compliant? Remember that you are responsible for your website and all content and search terms that lead to it, be it from a tube site, an affiliate lander or email. If the content implies any illegality, nonconsensual activity or physical abuse with lasting harm you could be getting a knock on the door.

Here are our top three ways to work within the regulations:

  • Mastercard is serious about its regulations, so make sure that not only do your processing websites meet Mastercard compliance standards, but the marketing efforts do too.
  • Make sure all content and terms used to market your website meet Mastercard standards.
  • The content policies that you have in place for your website are also true and enforced for all the platforms you use to market your website, like affiliate landers, blog posts, email campaigns and tube sites.

TOP WAYS TO STAY OUT OF THE BRAM HOT SEAT

No one wants to be called out for a violation, let alone be at the center of a content investigation. Be proactive and take the time to put in place a checklist to help you always remain in compliance.

Here are our top suggestions to avoid any compliance complications:

  • Only work with tube sites where you can control the content uploads.
  • Track your referring URLs. If traffic is coming from tube sites that you are not controlling your content on, block that traffic
  • Avoid being linked to bad actors and only work with tubes that have robust controls in place to ensure their sites do not contain CSAM and nonconsensual content.
  • Do not allow anonymous affiliates into your system.
  • If affiliates are found to be marketing your materials inappropriately, ban them or ensure their affiliate links go to a 404 page.
  • Use third parties to scan for your content on the internet, send and renew takedown requests for any content that you did not authorize and ensure your requests follow the format required by the regulation.
  • Ensure that your promotional materials could never be deemed nonconsensual. Make sure to include disclaimers, disclosures, even interviews in tour and promotional materials — especially if there is any reason for doubt about consent, such as in BDSM scenarios where models are bound, gagged or crying. It’s not a guarantee, but it can only help if you’re ever called to the mat on it.
  • Ensure affiliates are reviewed and only use your approved affiliate landing pages.

Compliance is never easy, but it’s something you must focus on every day to remain up to date and out of trouble. Proactive measures pay off in the long run.

Cathy Beardsley is president and CEO of Segpay, a merchant services provider offering a wide range of custom financial solutions including payment facilitator, direct merchant accounts and secure gateway services. Under her direction, Segpay has become one of four companies approved by Visa to operate as a high-risk internet payment services provider. Segpay offers secure turnkey solutions to accept online payments, with a guarantee that funds are kept safe and protected with its proprietary Fraud Mitigation System and customer service and support. For any questions or help, contact sales@segpay.com or compliance@segpay.com.

Related:  

Copyright © 2024 Adnet Media. All Rights Reserved. XBIZ is a trademark of Adnet Media.
Reproduction in whole or in part in any form or medium without express written permission is prohibited.

More Articles

opinion

Best Practices for Payment Gateway Security

Securing digital payment transactions is critical for all businesses, but especially those in high-risk industries. Payment gateways are a core component of the digital payment ecosystem, and therefore must follow best practices to keep customer data safe.

Jonathan Corona ·
opinion

Ready for New Visa Acquirer Changes?

Next spring, Visa will roll out the U.S. version of its new Visa Acquirer Monitoring Program (VAMP), which goes into effect April 1, 2025. This follows Visa Europe, which rolled out VAMP back in June. VAMP charts a new path for acquirers to manage fraud and chargeback ratios.

Cathy Beardsley ·
opinion

How to Halt Hackers as Fraud Attacks Rise

For hackers, it’s often a game of trial and error. Bad actors will perform enumeration and account testing, repeating the same test on a system to look for vulnerabilities — and if you are not equipped with the proper tools, your merchant account could be the next target.

Cathy Beardsley ·
profile

VerifyMy Seeks to Provide Frictionless Online Safety, Compliance Solutions

Before founding VerifyMy, Ryan Shaw was simply looking for an age verification solution for his previous business. The ones he found, however, were too expensive, too difficult to integrate with, or failed to take into account the needs of either the businesses implementing them or the end users who would be required to interact with them.

Alejandro Freixes ·
opinion

How Adult Website Operators Can Cash in on the 'Interchange' Class Action

The Payment Card Interchange Fee Settlement resulted from a landmark antitrust lawsuit involving Visa, Mastercard and several major banks. The case centered around the interchange fees charged to merchants for processing credit and debit card transactions. These fees are set by card networks and are paid by merchants to the banks that issue the cards.

Jonathan Corona ·
opinion

It's Time to Rock the Vote and Make Your Voice Heard

When I worked to defeat California’s Proposition 60 in 2016, our opposition campaign was outspent nearly 10 to 1. Nevertheless, our community came together and garnered enough support and awareness to defeat that harmful, misguided piece of proposed legislation — by more than a million votes.

Siouxsie Q ·
opinion

Staying Compliant to Avoid the Takedown Shakedown

Dealing with complaints is an everyday part of doing business — and a crucial one, since not dealing with them properly can haunt your business in multiple ways. Card brand regulations require every merchant doing business online to have in place a complaint process for reporting content that may be illegal or that violates the card brand rules.

Cathy Beardsley ·
profile

WIA Profile: Patricia Ucros

Born in Bogota, Colombia, Ucros graduated from college with a degree in education. She spent three years teaching third grade, which she enjoyed a lot, before heeding her father’s advice and moving to South Florida.

Women In Adult ·
opinion

Creating Payment Redundancies to Maximize Payout Uptime

During the global CrowdStrike outage that took place toward the end of July, a flawed software update brought air travel and electronic commerce to a grinding halt worldwide. This dramatically underscores the importance of having a backup plan in place for critical infrastructure.

Jonathan Corona ·
opinion

The Need for Minimal Friction in Age Verification Technology

In the adult sector, robust age assurance, comprised of age verification and age estimation methods, is critical to ensuring legal compliance with ever-evolving regulations, safeguarding minors from inappropriate content and protecting the privacy of adults wishing to view adult content.

Gavin Worrall ·
Show More