Your Members 11 will be the first version of Your Members to ship with iFrame versions of some payment gateways. The first 2 will be PayPal Pro Hosted and Skrill iFrame version, Skrill is the rebranding for MoneyBookers. These new gateways provide a more seamless integration with your site as the customer never appears to leave your site while still keeping the scope for PCI-DSS compliance low and as such these gateways should be suitable for all clients.
How do they work
The normal pay flow with Your Members is, when the user selects the payment gateway they wish to pay with they are redirected to that payment gateway site, they fill the details on that site and then are redirected back.
With the iFrame version, when they click to “go” to the payment gateway they are in fact taken to a page on the site they are on, which includes an iFrame. In the frame is the form from the payment gateway, which is filled in and once completed the user resumes the normal flow.
The user is still being taken to the 3rd party site it just won’t be immediately obvious to them, the forms themselves have been designed to be customised to match your current sites theme, and to work in an iFrame.
Do I need to use an SSL certificate?
While in theory there is no need for an SSL certificate in practice sites wishing to use the iFrame payment gateways will wish to make sure that the page hosting the iFrame is covered by an SSL certificate. This is not only to help with consumer confidence but also to help prevent man in the middle attacks which manipulate the token used to generate the iFrame. Do be aware that payment gateway providers may put in place their own rules, regarding security (For example iFrame version of PayPal Pro Hosted must only be on a https page) and it will be your responsibility to make sure your site reaches those rules.
Will I be able to use them with the old style flows?
Due to the way the iFrame is generated the new iFrame payment gateways will only be available with the new Custom Registration Form flow. Also due to the way Facebook works, the iFrames cannot be generated within Facebook, so if wishing to use them within Facebook the [ym_fb_force_leave_facebook] shortcode should be used on the page with the iFrame payment flow.
The iFrame gateways will be included in the core module of Your Members and will be available in Your Members 11.
Please note iFrame payment gateways are not available from all providers in all territories currently Your Members will support: PayPal Pro Hosted and Skrill iFrame.