Skip to content

Underwriting checks

An underwriting case runs through a catalog of checks (indicators) grouped into four risk groups. On the case page each check has a tooltip (hover the name) with a short description. Below is the overview of all checks.

  • Statuses: 🟢 OK · 🟡 Attention · 🔴 Risk · ⚪ Not run.
  • Type: 🤖 automatic · ✋ manual (officer) · 🧩 planned (Phase 2).
  • Risk score: subtractive model (starts 100 %, floor 1 %); 🔴/🟡 and unreviewed mandatory lower it. Levels: LOW ≥ 70, MEDIUM 40–69, HIGH < 40. On re-scan, changes show in the “Risk history” tab with a diff of what changed.
CheckTypeHow status is determined
Entity / address / contact / individual / website / descriptor / related-entity researchOfficer, by research
Social media, Review boardOfficer (auto-OSINT provides candidates)
EGR check (Belarus)🤖UNP not found/inactive → 🔴; name mismatch → 🟡; active → 🟢
GRP check (tax)🤖2nd registry (tax): not found/liquidated → 🔴; mismatch vs EGR → 🟡; provides address
EGR events🤖Liquidation/reorganization/termination/bankruptcy → 🔴
Registration date🤖By EGR: <6 mo → 🔴; <2 yr → 🟡; older → 🟢
OKED vs declared MCC🤖OKED from EGR → expected MCC (AI); high-risk while declared benign → 🔴; mismatch → 🟡
Website age🤖By the oldest domain registration (whois): <6 mo → 🔴; <18 mo → 🟡
License verificationNo license → 🔴
Web Shield Warning List🧩Planned
MATCH (Mastercard) / VMSS (Visa)🧩Planned (registry integration)
Own blacklist🤖Match of UNP/domain/email/name against the bank list → 🔴
CheckTypeHow status is determined
Business classification (MCC)🤖→✋AI hint from content, officer confirms
MCC-miscoding🤖Declared vs actual MCC: understatement/confident mismatch → 🔴; other → 🟡
Content violation scan (BRAM/VIRP)🤖Confirmed → 🔴; candidates → 🟡
Website Compliance (WC%)🤖Below threshold → 🟡
Google Safe Browsing🤖Domain flagged → 🔴
GeoMatch🤖Geo mismatch
Merchant Location, Price comparisonOfficer
Historical content violations🤖Confirmed past violations → 🔴
Deceptive marketing🤖Markers (guaranteed income/cure, urgency): ≥3 → 🔴; 1–2 → 🟡
Subscription model🤖Billing terms (subscription/auto-renew/trial) → 🟡
Advertised payment options🤖Crypto/anonymous → 🟡; card methods present → 🟢
Closed member area🤖Members-only language or subscription+login → 🟡
Third-party technologies🤖List of trackers/widgets (GA/Metrica/Pixel)
High-Risk Verification🧩Planned (external provider)
CheckTypeHow status is determined
AML screening of director / UBO / entity🤖Match in sanctions/PEP lists (OpenSanctions) → 🔴
FATF risk: hosting (GeoIP) / address / contact phone country🤖Country on FATF blacklist → 🔴, greylist → 🟡
Portfolio cross-check🤖Shared details with other merchants → 🔴
Corporate structureOfficer establishes the UBO
Virtual address🤖Mass registration (address shared by ≥3 merchants) → 🔴; virtual-office markers → 🟡
CheckTypeHow status is determined
SiteReveal, Load Balancing, Traffic Analysis🤖Hidden links / balancing / traffic anomalies
IP Scan, Whois🤖Hosting infrastructure, domain owner
Domain / SSL age🤖Fresh → 🔴/🟡
Outgoing/backlinks, Mobile apps, Affiliate networks🤖Links to third-party/risky resources
Historical TL violations🤖Present before → 🔴
Website Usage🧩Planned
Server in Belarus🤖Server geo by IP (local GeoLite2 / ip-api): outside RB → 🟡

Website readiness for acquiring (onboarding)

Section titled “Website readiness for acquiring (onboarding)”

A separate layer of checks — whether the merchant’s website is ready for card acquiring per the requirements of banks, ERIP and payment systems (MTBank merchant audit form, 6 sections). On the case page there is a “Site readiness” action: a 🟢🟡🔴 checklist by section + a merchant-facing “what to fix” PDF. These checks are part of the shared catalog (tagged with the onboarding module); most are deterministic scanner detections.

CheckTypeHow status is determined
Organization details on site🤖No UNP → 🔴; incomplete (RB address/contacts) → 🟡
Site details ↔ application (UNP)🤖Site UNP ≠ application → 🔴 (different entity); match → 🟢
Prices in BYN🤖Foreign currency only → 🟡; BYN present → 🟢
Payment rules and security🤖No payment rules / 3-D Secure → 🟡
Payment system logos🤖No payment-system logos in <img> → 🟡
Order procedure description🤖No order procedure → 🟡
No PIN-code field🤖PIN field at payment detected → 🔴 (phishing sign)
Broken pages (4xx/5xx)🤖Internal pages with errors → 🟡
Dead external links🤖Links to non-existent resources (HEAD check) → 🟡
Single domain🤖Free third-level hosting / multiple domains → 🟡
Server in RB🤖Hosting outside RB (geoip) → 🟡
Manufacturer information🤖No manufacturer/importer info → 🟡
Cardholder-country legality warning🤖No warning → 🟡
Extra processing/delivery fee disclosed🤖Disclosed → 🟢; not detected → ⚪
Export restrictions🤖Stated → 🟢; not stated → ⚪
Verification method logos (3-D Secure)🤖No 3-D Secure/VbV logos → 🟡
Key page screenshots🤖Evidence screenshots present → 🟢
Trade Register RB🤖UNP matched against MART snapshot: not found → 🔴; online-shop domain matched → 🟢
BelGIE registrationExternal registry without API — officer review