With the rise of sophisticated bot attacks and fraudulent activities, Zuora has deprecated Hosted Payment Method Pages (HPM) version 1.0. There are no further plans for HPM 1.0 and Zuora will no longer provide support for any issues with HPM 1.0.
Payment Pages 2.0 are the replacement for HPM 1.0. Payment Pages 2.0 provides the following additional security measures to ensure unauthorized page submissions do not occur. For additional benefits of using Payment Pages 2.0, see Overview of Payment Pages 2.0.
- Upgraded token and signature algorithm
- IP rate limiting
- Card rate limiting
- RSA token expiration
- Google reCAPTCHA v2 and v3
This guide is intended to assist you in identifying areas of your existing code base that references HPM 1.0 functionality and removing them. This guide also provides details on how to implement Payment Pages 2.0