Dynamic linking
Binding an authentication code to a specific amount and payee so it cannot authorise a different payment.
Dynamic linking is a requirement of the EU regulatory technical standards on strong customer authentication for remote electronic payments: the payer must be made aware of the amount and the payee, and the authentication code generated must be specific to that amount and that payee. Any change to either makes the code invalid. It is the regulatory ancestor of a closed mandate, where an approval is bound to exactly one transaction.
Agent Minute explains this term on 25 October 2026.
Related terms
Strong customer authenticationAuthentication using two or more independent elements from knowledge, possession and inherence.Closed mandateIn AP2, a mandate bound to one specific action, such as a finalised checkout or a specific amount.Secure Payment ConfirmationA W3C web standard for confirming a payment's details with a WebAuthn credential, producing signed evidence.Rich Authorization RequestsAn OAuth extension that carries structured details of the action being authorised, such as amount and payee.