Koin
On this page
About Koin#
Koin is a credit risk and fraud prevention for Brazilian BNPL.
Koin is a pioneering Brazilian fintech and a leading provider of Buy Now, Pay Later (BNPL) solutions in Latin America, particularly famous for its "Boleto Parcelado" and "PIX Parcelado" (installment) products.
Capabilities
- Dual-Threat Assessment: Evaluates a transaction not just for identity fraud, but also for the consumer's creditworthiness and likelihood of default.
- 100% Liability Shift: For transactions processed through Koin's alternative payment methods, they assume the full credit and fraud risk, guaranteeing you get paid even if the customer defaults or commits fraud.
- Financial Inclusion Data: Utilizes alternative data sources to score unbanked or underbanked Brazilian consumers who might lack traditional credit histories but are legitimate buyers.
- Seamless Local Installments: Enables risk-free installment offerings via Boleto or PIX without tying up the customer's credit card limit.
How It Works With Our Orchestration Engine
Because Koin makes a definitive financial decision on whether they will fund the transaction, their API provides clear status responses (Approved, Pending/Review, Denied).
Our orchestration engine maps an "Approved" directly to our Low Risk tier (proceeding with the Koin payment capture), maps "Pending" to Medium Risk (holding the order state while Koin finalizes credit checks), and maps "Denied" to High Risk (blocking the Koin payment, but allowing you to fallback/route to a different payment method like a standard credit card via Adyen).
Risk Tiers
The table below outline how the raw responses and risk scores from each supported provider are mapped to these standardized levels, along with the default routing actions triggered by each tier. Keep in mind that while these represent our standard configurations, you have full control to customize what triggers each risk level to perfectly align with your business's unique risk appetite.
Koin evaluates both fraud and credit risk simultaneously. Their responses dictate whether they will assume the liability for the installment payment.
| Provider's Raw Response (Example) | Our Standardized Risk Level | Default Routing Strategy |
|---|---|---|
Status: Approved | 🟢 LOW RISK | Process directly via preferred gateway (e.g., Adyen) |
Status: Pending (Credit/Fraud Check) | 🟡 MEDIUM RISK | Hold transaction state until final webhook update and/or Trigger 3D Secure (3DS) |
Status: Denied | 🔴 HIGH RISK | Deny transaction OR Route to specialized high-risk gateway |
Requirements#
Before you configure Koin in the DEUNA Admin, you must have an active Koin merchant account. During onboarding, Koin provides the credentials for your integration.
Gather the following values from your Koin integration manager or onboarding documents:
- Org ID: Your unique 10-digit identifier for your merchant account.
- Private Key: Your private key.
- Store code
- Merchant Type
Configuration steps#
Connecting Koin is a one-time setup in the DEUNA Admin.
Create the connection
-
Log in to your Admin portal.
-
Go to Connections.
-
Search for Koin and click Connect.
Connections
Discover and manage payment, wallet, and anti-fraud integrations.
| Connections | Type | Status | Action |
|---|---|---|---|
| Adyen | Payment gateway | Connected | |
| Worldpay | Payment gateway | Connected | |
| PayPal | Payment method | Connected | |
| Mercado Pago | Payment method | Not connected | |
| Riskified | Anti-fraud engine | Not connected |
-
A form will appear. Enter the following information and credentials:
Credential name Value Type Org ID Provided by Koin Mandatory Private Key Provided by Koin Mandatory Environment (test, live) * "test" for Sandbox and "live" for Production Mandatory Country Code (2 chars code) * 2-digit Country Code (e.g. "MX" Mandatory Merchant Type (provided by Koin) * Provided by Koin, otherwise use "ecommerce" or "airline" Mandatory Merchant Category (MCC, 4 digits) * Merchant category code (e.g. "3676") Mandatory Commercial Name * Merchant's name Mandatory Listener Mode (true or false) * Default "false" Mandatory Store Code * Provided by Koin Mandatory Store Latitude * Latitude of the store. Default "0" Optional Store Longitude * Longitude of the store. Default "0" Optional -
Click Save.
Set up the sandbox environment in DEUNA
- Open the DEUNA Admin and enable Test mode.
- Confirm that the Koin connection uses the
testenvironment. - If you use post-authorization review, ask your DEUNA Technical Account Manager to enable manual review and automatic follow-up for the store.
Configure Koin as an anti-fraud provider in DEUNA
Configure Koin as an anti-fraud provider using testing credentials:
- Go to Connections and open Koin.
- Enter the Koin test credentials and select the
testenvironment. - Go to Payment strategies and add Koin to the required pre-authorization or post-authorization stage.
- Activate the strategy after validating its provider order and medium-risk handling.
Payment strategies
Configure default processing and rules for each payment flow.
Default processing
Configure default processing and rules for each payment flow.
| Rule | Routing | Status | Action |
|---|---|---|---|
| Default processing | Adyen → Worldpay | Active |
Specific rules
Configure default processing and rules for each payment flow.
| Priority | Rule | Conditions | Routing | Status |
|---|---|---|---|---|
| 1 | High-value orders | Amount over USD 100 | Adyen → Worldpay | Active |
5. Configure device fingerprinting
-
When connecting to Deuna via Payment Widget and Payment link follow this guide.
-
When connecting to Deuna by direct API, follow this guide.
-
For either connection, you have to add Koin in the providers object with the following parameters:
JavaScriptKOIN: { orgId: '21xx031605' } -
The parameter to configure is
orgId, which is part of the connection credentials. -
For API connections, send the output to DEUNA in the
device_idfield in base64.
6. Test the integration
Make the following transactions using the emails:
| Result | Billing_address.email |
|---|---|
| Automatic Aprove | autoaccept@deuna.com |
| Automatic Deny | autoreject@deuna.com |
| Async Approve | manualaccept@deuna.com |
| Async Deny | manualreject@deuna.com |
| 3DS | auto_inprogress_3ds2_autoaccept@deuna.com |
Open the resulting order in the Admin and verify the fraud decision, payment status, and operation history. Pre-authorization decisions should be available before payment processing; post-authorization and manual-review decisions may complete asynchronously.
Orders
Find a payment, then open its operational context.
| Order ID | Created | Customer | Processor | Amount | Status |
|---|---|---|---|---|---|
| Oct 1, 14:32 | sofia@example.com | Worldpay | $128.40 | Approved | |
| Oct 1, 14:18 | diego@example.com | Adyen | $82.00 | Pending | |
| Oct 1, 13:54 | ana@example.com | Stripe | $246.90 | Declined | |
| Oct 1, 13:41 | marco@example.com | Worldpay | $54.25 | Approved |
7. Deploy Koin to Production
Set up the production environment:
- Koin:
- Get access to Production Dashboard in Production: Ask Koin for the required credentials
- Login into the dashboard to configure the account
- DEUNA: Configure the merchant for Production in the Admin
- Unselect Test Mode
- Configure Koin as an anti-fraud provider using Production credentials, setting
liveorproductionas Environment - Configure the payment gateways and establish a Payment Strategy.