This application adds Worldpay as a fully integrated payment gateway for Invision Community Commerce. Customers are securely redirected to a Worldpay-hosted checkout page to complete their payment, so sensitive card details never pass through your community. After checkout, the application keeps the Invision Community transaction in sync using signed webhook events and Worldpay Payment Queries.
Key Features
Worldpay Access Hosted Payment Pages checkout.
Separate Try (sandbox) and Production environments.
Automatic settlement workflow.
Secure HMAC validation of the Worldpay Event-Signature webhook header.
Validation of transaction reference, payment ID, merchant entity, amount, and currency.
Payment status synchronisation through Worldpay Payment Queries.
Reliable handling when the webhook arrives before or after the customer returns.
Protection against duplicate webhook processing and duplicate transaction completion.
Successful, pending, refused, cancelled, expired, and error payment states.
Full and partial refunds from the Invision Community AdminCP.
Optional billing address forwarding.
Optional checkout locale and Hosted Payment Page customisation ID.
Built-in configuration validation and an AdminCP setup checklist.
Secure Hosted Checkout
The customer completes payment on Worldpay's Hosted Payment Pages and is then returned to your community. Card details are collected by Worldpay rather than by your Invision Community installation, helping reduce the PCI DSS scope associated with handling payment data directly.
Transactions are completed only after Worldpay confirms a successful settlement or sale state. Signed webhook payloads are verified before processing, and their payment details must match the corresponding Invision Community transaction.
Refunds
Administrators can issue full or partial refunds through the standard Invision Community transaction controls. The gateway retrieves the latest action links from Worldpay and submits the appropriate refund request with the correct amount and currency.
Requirements
Commerce app.
A Worldpay Access account with Hosted Payment Pages enabled.
Worldpay Try or Production API credentials.
A Worldpay merchant entity.
An Event-Signature shared secret for webhook verification.
A publicly accessible HTTPS webhook URL with a trusted certificate.
Important
Recurring billing and subscription renewals are not supported by this release.
You may only provide a review once you have downloaded the file.
There are no reviews to display.