Cheque security

Fraud controls

Cheques are processed using Positive Pay controls, which means payment data is shared with the issuing bank before the cheque is presented for deposit. If a mismatch is detected, the bank may flag or reject the cheque for review.

Positive Pay validates cheques based on:

  • Recipient name

  • Cheque amount

Multifactor authentication for eChecks

You can optionally enable multifactor authentication (MFA) for each eCheck transaction, for batch file and API-initiated payments. When enabled, the recipient must verify their identity when prompted, before accessing the cheque.

Two verification methods are supported – SMS code and Passphrase.

SMS code

The recipient enters a code sent to their mobile number. You must provide a recipient phone number with each MFA-enabled eCheck transaction, in international E.164 format.

Passphrase

Configure the passphrase field with Vitesse before issuing eChecks. This configuration applies to each MFA-enabled eCheck transaction.

You define the value used as the passphrase. You need to securely communicate it to the recipient, before sending the cheque.

MFA access limits

Verification typeLimits
SMSUp to 3 attempts to enter the code
Up to 3 resend attempts
Locked out for 10 minutes after failed attempts
PassphraseUp to 5 attempts before locked out
💡

To configure MFA in batch files, see Issuing cheques using batch files.
To configure MFA in the API, see Route types.



Related information

Did this page help you?