Frequently Asked Questions
Frequently Asked Questions
NEW "Forgot Password" Flow Security Changes
What new security update is being introduced?
Starting April 28, 2026, We are updating the Forgot Password flow to improve security. Instead of answering knowledge‑based security questions, you will now be required to verify your identity using a One Time Passcode (OTP) before resetting your password.How will the new Forgot Password flow work?
The updated Forgot Password experience follows a three‑step process:
Step 1: Identify
- Select Forgot Password on the login page.
- Enter the email address associated with your account.
- Complete the on‑screen verification code and select Continue.
Step 2: Verify
- A One‑Time Passcode (OTP) will be sent to the email address on file.
- Select Send OTP, then enter the passcode within 10 minutes to verify your identity.
- For security, do not share your one‑time passcode.
Step 3: Reset Password
- Once your identity is verified, you’ll be prompted to create a new password.
- Enter and confirm your new password, ensuring it meets the stated password requirements.
- Submit the form to complete the password reset process.
If you don’t receive the one‑time passcode, check your spam or junk folder or request a new code.
Where will the one time passcode be sent?
The one‑time passcode will be sent to the email address associated with your account.Will this change affect my existing access or permissions?
No. This change does not modify your existing access or permissions.What should I do if I don’t receive the one time passcode?
If you don’t receive the passcode:Check your spam or junk email folder
Retry the Forgot Password process
If the issue persists, contact Visa Developer Platform Support for assistance.
Is any action required from me before April 28, 2026?
No action is required. The new Forgot Password experience will be available automatically when the change goes live.
Multi-Factor Authentication- Frequently Asked Questions
Why is MFA being introduced?
MFA provides an extra layer of security beyond your password, helping protect your account from unauthorized access.How does MFA work?
When signing in to the Visa Developer Platform (VDP), MFA adds an additional layer of security to confirm your identity. The full login sequence is as follows:- Enter your username and password on the login screen.
- Once your password is accepted, you will be prompted to answer your challenge question.
- After successfully completing the challenge question, you will be taken to the MFA verification screen.
- On this screen, you will select how you would like to receive or generate your OTP. Available options include:
- Email OTP (default)
- Text Message (SMS) OTP
- Mobile Authenticator App OTP
- Click “SEND OTP” to request a one-time passcode. The OTP will be delivered via the method you selected.
- Enter the OTP on the MFA screen.
- Once the OTP is validated successfully, you will be signed in and redirected to your dashboard page.
What MFA options can I choose from?
You will have three verification options:- Text Message (SMS)
- Mobile Authenticator App
Will I need to complete MFA every time I log in?
Yes. MFA will be required each time you log in to the Visa Developer Platform (VDP).Will this change my current access or permissions?
No. This update does not impact your existing access, roles, entitlements, or project permissions on VDP.Will this affect my access to other Visa services?
No. The change does not affect other Visa platforms or services.Where will my OTP be sent?
Your OTP will be sent to the verification method you select on the MFA screen after entering your username, password, and completing the challenge question.Do I need to complete MFA if I log in through Visa Access SSO?
No. If you access the Visa Developer Platform (VDP) through Visa Access Single Sign‑On (SSO), you will not be prompted for MFA.What if I don't receive the OTP?
- Check spam/junk folders
- Ensure your profile information is current
- Use a different MFA option (SMS or authenticator app)
If you continue to experience issues, please contact support at developer@visa.com.
New Sign-In Experience- Frequently Asked Questions
What is Universal Login and Why is it being introduced?
Starting November 5, 2025, Visa Developer Platform will use Visa’s Universal Login for authentication. Universal Login brings enhanced security and a consistent user experience across Visa applications.What changes will I see on the login page?
Introducing a new feature called Passkey on the login screen. Passkey is an optional, passwordless authentication method that is encouraged for enhanced security.What is Passkey and how does it work?
- Passkey is a secure, passwordless authentication method using device-based credentials (e.g., Windows Hello, FIDO2 Security Key).
- New users will register a Passkey during account setup.
- Existing users will be prompted to register a Passkey after logging in with email and password.
Can I still use my password to log in, and how do I learn more about Passkey?
Yes, while the default login screen will continue to use passwords, users are encouraged to set up Passkey for enhanced security.Are there device requirements for Passkey login?
- Windows devices: Enable Windows Hello (PIN, fingerprint, or facial recognition).
- Mac devices: Use a FIDO2-Certified Security Key.
How do I create a new Passkey?
Go to your account’s Security Settings in the "My Account" page, select “Create New Passkey”, and follow the on-screen instructions.How do I manage my Passkeys?
Go to “Manage Passkeys” under My Security in the “My Account” page.Can I delete or deactivate a Passkey?
Yes. You can manage, delete, or deactivate Passkeys from the Security Settings under the "My Account" page.How many Passkeys can I create and manage?
You can create and manage up to 10 Passkeys.What happens if I reach the limit of 10 Passkeys?
You’ll need to delete an existing Passkey before creating a new one.Are there changes to my account profile?
There are no changes or impacts to your existing account profile. The only update is the addition of new optional fields in the Profile screen under "My Account".
Authentication & Account Management- Frequently Asked Questions
- How do I fix registration/login issues?
Here are some tips to resolve problems with logging in and registering at the Visa Developer Center:
Email
If you are not receiving emails from us, in some cases, the email might get caught in a spam filter. Please check your spam, trash, and archived folders.
Password
While logging into your Visa Developer account, please make sure you are providing your email address as how you have entered it in the system.
To change password, please navigate to this link - https://developer.visa.com/identity/user/forgot.
If you are experiencing an issue, please try the following to resolve the issue:
Try using another web browser (e.g. IE, Chrome, etc.).
Try clearing your cache and cookies.
How do I create and submit a Certificate Signing Request for Two-Way SSL authentication?
The Certificate Signing Request (CSR) is a prerequisite to get your project certificate (cert.pem).How do I fix issues with my test credentials?
To fix issue with your test credentials:
- Verify the client certificate being used in the certificate chain.
- Check the contents of keystore.
What endpoints should I use during the development and testing process?
Use the following endpoints for:- Sandbox: sandbox.api.visa.com
- Projects requiring testing in the Certification environment: cert.api.visa.com
- Production: api.visa.com; api.visa.co.in (India)
Can you help me understand how the payment ecosystem works?
Please refer to Visa Partner's Learn section for an overview of the payments ecosystem.