Multifactor Authentication
Upon submission of the contact information, Payless Power conducts a multi-factor authentication check. This involves two steps - notification to the customer that they will receive an MFA code on their mobile phone and/or email, and then a screen allowing for entry of the code for verification.

Validated and accepted contact information is vital in both our fraud detection, and for future use in contacting the customer. Partners utilizing the Payless Power API are expected to incorporate this step into their enrollment flow.
If a customer returns to the contact step and changes their mobile phone and/or email, the MFA check will need to be initiated again.
The API exposes 2 methods for MFA, one to be able to send the code and a second one to check the contact verification.
The system will require only phone verification, but email verification is also available. These are hard and fast PLP requirements for enrollment and may not be skipped or excluded.