If everyone's facebook account has CC details attached and a 1 click "pay now" button you are only 1 XSS vulnerability from fraud on an unprecedented scale.
If everyone's facebook account has CC details attached and a 1 click "pay now" button you are only 1 XSS vulnerability from fraud on an unprecedented scale.
http://www.wired.com/magazine/2010/02/ff_futureofmoney/all/1
In order to do that FB would be looking at setting up massive infrastructure and essentially having a "banking division" that would get bogged down in regulations and bureaucracy.
Another advantage of credit cards is the credit part and it would seem a big stretch for FB to get into the lending game.
I think how well they can execute is only one part of the puzzle, since they are going to have to deal with the governments of multiple jurisdictions and big financial institutions and will basically be at their mercy.
The consumer doesn't give two flying fucks about any of this. This is a very important point.
Ever had to buy stuff you didn't want to meet a minimum spend on cards? Cause over here many shops have a minimum of £5. And this is why.
Oh yes, the consumer cares, they just blame the shop owner instead of the cartels.
True story here. Years ago in a retail business we had a $10 minimum for credit card purchases. A customer came in and bought something for like .50c. So the counter person did the charge for $10 and refunded them $9.50 in cash.
On the internet? No.
Now you know what we're all talking about and can start giving a flying fuck!
1. I don't have any pressing need to buy a product at such a low price point, and don't see any need to do this in the future.
2. My credit card works wonderfully, and if a retailer pisses me off, I'll phone them and it'll be reversed no questions asked.
3. Again, I (and most other consumers) already have a solution to buying something online that is almost perfect from my perspective. I have three of them in my wallet sitting with me at this very moment (actually, my wallet is a bit of a problem you could look into, especially in the summer).
I don't need paypal. I don't need pretend currency. I don't trust you to get anywhere near my actual bank account. I have several security options with my credit cards that I'm comfortable with.
I personally don't really care that it costs you x amount to take my credit card as a retailer. I've already factored in all your business costs into my evaluation of the price of your product. I also don't care that your employee demanded a raise last week, you need to buy a new computer or that rent is going up. These are your problems.
Again, do you understand that as a consumer, I view my credit cards as almost the ideal product to conduct business on the internet? You're trying to fix a problem that I just don't have by providing me with a solution that I just don't need.
So you're making two mistakes:
1. you != everyone else
2. 100 keypresses per transaction[1] != 'ideal solution'
There's plenty of room for disruption in this market still. No-one's asking you to become one of those disruptors and we won't be taking away your credit card. You can keep it. Just like all those people who prefer cash to credit cards can keep their cash.
[1] Card number, SSN, expiration date, address, address line 2, City, County, Postcode. Maybe emailaddress, telephone number. Roughly 100 key presses to enter that lot
Many small businesses still do it, of course. What keeps people from reporting them is a mixture of not knowing the regulations and wanting the small business to stay afloat. But regardless, minimum payments actually are put in place by the business.
Minimums are now allowed on CC
Sure occasionally we get hit with a chargeback ($30 plus the charge amount) and sure we are powerless and they just added some arbitrary $7 month fee. But without this entire system I wouldn't be in business. I also operated a retail business years ago and accepted credit cards. It was a tremendous improvement over having to extend credit to a business owner and then collecting. The fees were well worth the trouble saved.
In europe certainly most people would seem to have a debit card. Besides I'm assuming at the backend the FB system would require you to enter a debit/credit card.
It would seem very unwise for FB to begin taking down everyone's bank account number as in the case of fraud with a card you can simply cancel the card and get a new number.
I don't have a credit card. I know a lot of people who does but rarely uses them, debit cards feel more secure than credit cards against theft/fraud (and I'm not really sure if they are, I don't think so).
Visa is a credit card, however. In Europe, it's often tacked onto a regular debit card, but it's a separate thing not everyone has.
In Brazil, I do not know a single debit card that will allow international purchases, or that will be allowed in Paypal (even though Paypal has a local presence).
If I want to use my ccard online, away from home I need to have all kinds of codes remembered or written down, my normal bank card and this little device.
Using my ccard online has become quite the pain in the ass.
I should never have to type in a password, credit card number, or address if I don't want to... yet nobody except a few proprietary browser plugin vendors treats this as a problem worth solving.
Any tool that actually solves the problem, at least from my perspective, is going to have to give me the option to ignore whatever security conventions are built into the standard(s).
What might make more sense would be for FB to allow linking a paypal account with a FB account which could then allow users to login to Paypal via FB.
This would mean they could use paypal's more mature backend and let them deal with the messy stuff, while facebook could still potentially get all the fun of spying on your purchases.