3DS ReferenceProtocol & field guide

EMV 3-D Secure · Core specification 2.3.1.1

OOB App URLoobAppURL

OOB App URL in Challenge Response (CRes).

Source edition: Core 2.3.1.1 · Type: String · Length: Variable, maximum 2048 · Maximum length: 2048

Baseline in CRes Conditional

Varies by context. Requirement or applicability varies by channel or message category. Select a specific context to resolve it. Usage and conditions ↓

Explore in context →

Usage in CRes

Universal App Link to an Authentication App used in the OOB authentication. The OOB App URL will open the appropriate location within the OOB Authentication App. Refer to Table 1.3 for the Universal App Link definition.

Conditional inclusion — source text

Only present for [ ACS UI Type = 04 if the OOB App Label is present OR ACS UI Type = 06 ] AND if: • OOB App URL Indicator = 01 in the CReq message; AND • the ACS uses the OOB Authenticati on App automatic switching feature for this transaction

Related condition fields: acsUiType, oobAppURLInd.

Format and scope

Type: String · Length: Variable, maximum 2048 · Maximum length: 2048

Source components: ACS. Channels: 01-APP. Categories: 01-PA, 02-NPA.

EMV_3DS_CoreSpec_v2.3.1.1_20230530.pdf, Table A.1, PDF pages 263

Transaction context

This reference covers the published source edition. Use the explorer to inspect this field and any applicable transaction conditions. Scheme programme requirements are not inferred from the protocol edition.

Explore in context →

Sources and related references

EMV_3DS_CoreSpec_v2.3.1.1_20230530.pdf, Table A.1, PDF pages 263

Source review status: carried-forward. Carried-forward material has not acquired a new verification claim.

Document fingerprint (SHA-256): 6fdf0aba3fc1a765f96b74dad4069d1e189969f38f0023647021687daf589d6b