Peter Edwards1

Q: merchant info and apple pay transaction

What info does merchant store when you make a purchase with apple pay?

MacBook Air (13-inch Mid 2013), OS X Mountain Lion (10.8.5)

Posted on Sep 5, 2015 10:35 AM

Close

Q: merchant info and apple pay transaction

  • All replies
  • Helpful answers

  • by Jonathan UK,Helpful

    Jonathan UK Jonathan UK Sep 5, 2015 11:20 AM in response to Peter Edwards1
    Level 8 (39,756 points)
    Apple Watch
    Sep 5, 2015 11:20 AM in response to Peter Edwards1

    When you add a payment card to Apple Pay on a device, each combination of card and device (Apple Watch, iPhone, iPad) is given a unique Device Account Number.

     

    When you make a purchase, the merchant's terminal receives your Device Account Number (a "token"), a one-time security code that is specific to that transaction and other data required to complete the transaction.


    The merchant doesn't see your payment card number, name, address or any other personally identifying information. Also, Apple doesn't know what you purchased, from where you bought it or how much it cost.

  • by Peter Edwards1,

    Peter Edwards1 Peter Edwards1 Sep 5, 2015 11:10 AM in response to Jonathan UK
    Level 1 (4 points)
    Mac OS X
    Sep 5, 2015 11:10 AM in response to Jonathan UK

    Thanks for the information.

     

    Peter

  • by Jonathan UK,Solvedanswer

    Jonathan UK Jonathan UK Sep 5, 2015 11:11 AM in response to Peter Edwards1
    Level 8 (39,756 points)
    Apple Watch
    Sep 5, 2015 11:11 AM in response to Peter Edwards1

    You're welcome!

  • by Peter Edwards1,

    Peter Edwards1 Peter Edwards1 Sep 5, 2015 11:27 AM in response to Peter Edwards1
    Level 1 (4 points)
    Mac OS X
    Sep 5, 2015 11:27 AM in response to Peter Edwards1

    I have a followup question. You mentioned the merchant's terminal receives your Device Account Number (a "token"). Can the mechant read this token or ID you from it ?  Who can read the Token?

     

    Peter

  • by Jonathan UK,

    Jonathan UK Jonathan UK Sep 5, 2015 12:04 PM in response to Peter Edwards1
    Level 8 (39,756 points)
    Apple Watch
    Sep 5, 2015 12:04 PM in response to Peter Edwards1

    The Device Account Number is just a number, like a credit or debit card number (but it doesn't contain your credit or debit card number).

     

    To process a payment, a merchant's terminal needs both the DAN and the one-time security code. The code verifies that a transaction originates from your device and can be checked (by the payment network or bank) before a payment is approved. Both pieces of information are provided by the Secure Element on your device. Information stored there is isolated from the operating system and is never stored on Apple's servers or backed up to iCloud.