Google Pay is awesome

I'm also very conscious about card security which is why I much prefer using Google Pay and Samsung Pay every chance I get vs using my physical card. I had to have a card replaced years ago due to the Home Depot data breach. Same with the Target data breach. Marriott just announced a data breach affecting 500 million of their customers. It seems like every week we're reading about another one of these companies having their customer data stolen. I don't really trust any merchant to keep my data safe these days so if I can purchase their goods and services and never have to give them my actual card data...I'm all for it. My favorite local chain of gas stations has started installing NFC readers at their pumps and it's great since gas stations are one of the most common places card skimmers are found.
 
Yeah I agree, it's backwards. Would prefer to tap then it pulls up authentication to pay. The phone should detect that a payment wants to come through, then pull up the pay screen then you decide you want to go ahead with it.

Pixel is the other way around where you're authorising a payment (simply by unlocking the phone) even before the transaction has started. You're pretty much saying 'yes' to anything the phone touches rather than how it should be with the payment screen asking if you want to authorise a payment, and you having to confirm it.

I know what I'm paying for before I touch so I don't see the issue. Maybe if you provide an example of how you don't know what you're paying it would help.
 
I'm getting into Google pay more and more.. CVS just updated ther terminals, and a couple of other places I frequent. It's super convenient for me lately and I love the security.
 
I know what I'm paying for before I touch so I don't see the issue. Maybe if you provide an example of how you don't know what you're paying it would help.

It's not that I don't know what I'm paying for, that was never mentioned.

It's very simple - you should be asked to confirm every purchase after you put your phone on the terminal. It's a financial transaction, it should require confirmation. Simply unlocking my phone doesn't mean I want to automatically give consent to all NFC payments even before I put it on the terminal.

Google Pay would be much better if you could touch the terminal with your phone when it's asleep, the phone wakes up, the phone shows that Google Pay wants to make a payment, and you confirm the payment via fingerprint, pin number, etc. Google is pushing for the Pixel to 'be smart' and pushing security so hard, I'm surprised they're so lax about financial transactions.
 
I'm getting into Google pay more and more.. CVS just updated ther terminals, and a couple of other places I frequent. It's super convenient for me lately and I love the security.

I use it when I remember but it's hard to break old habits
 
It's very simple - you should be asked to confirm every purchase after you put your phone on the terminal. It's a financial transaction, it should require confirmation. Simply unlocking my phone doesn't mean I want to automatically give consent to all NFC payments even before I put it on the terminal.

Yes, this. For example, even when the phone is unlocked Lastpass requires fingerprint or PW confirmation before opening. I don't have banking apps but I imagine they work similarly. Locked or unlocked, GP should require specific fingerprint/PW confirmation before transacting.
 
Yes, this. For example, even when the phone is unlocked Lastpass requires fingerprint or PW confirmation before opening. I don't have banking apps but I imagine they work similarly. Locked or unlocked, GP should require specific fingerprint/PW confirmation before transacting.

Why? Do you ask your credit/debit card for a confirm before you swipe it? How is the transaction different through NFC and need confirmation? You're standing at the terminal...
 
Why? Do you ask your credit/debit card for a confirm before you swipe it? How is the transaction different through NFC and need confirmation? You're standing at the terminal...

Pretty sure my credit cards can't inadvertently or otherwise communicate with an NFC reader, nor can they swipe themselves. Additionally, there's no reason why every fingerprint unlock should be taken as confirmation that GP should be active.
 
Pretty sure my credit cards can't inadvertently or otherwise communicate with an NFC reader, nor can they swipe themselves. Additionally, there's no reason why every fingerprint unlock should be taken as confirmation that GP should be active.

Okay, but just like your CC can't swipe themselves, your phone can't unlock itself. Only you can do that.
 
It's not that I don't know what I'm paying for, that was never mentioned.

It's very simple - you should be asked to confirm every purchase after you put your phone on the terminal. It's a financial transaction, it should require confirmation. Simply unlocking my phone doesn't mean I want to automatically give consent to all NFC payments even before I put it on the terminal.

Google Pay would be much better if you could touch the terminal with your phone when it's asleep, the phone wakes up, the phone shows that Google Pay wants to make a payment, and you confirm the payment via fingerprint, pin number, etc. Google is pushing for the Pixel to 'be smart' and pushing security so hard, I'm surprised they're so lax about financial transactions.

Not following you. I unlock my phone when I'm ready to pay for my transaction. How am I giving consent to all my NFC payments? It's a single transaction. I'm really trying to understand

For my use case it doesn't matter because I use my debit card with Google Pay so it requires a pin code after I touch the terminal except fior small food purchases that are put through as a charge.
 
Why? Do you ask your credit/debit card for a confirm before you swipe it? How is the transaction different through NFC and need confirmation? You're standing at the terminal...

I'm not following it either unless there is some rouge NFC reading going on.

As I explained in my response to someone else I use my debit card with Google Pay so for most transactions except small food purchases I have to enter a pin after touching the pad.
 
Pretty sure my credit cards can't inadvertently or otherwise communicate with an NFC reader, nor can they swipe themselves. Additionally, there's no reason why every fingerprint unlock should be taken as confirmation that GP should be active.
This.

For some reason Google think that unlocking your phone means you agree to any NFC payment transaction that may interact with your phone.
 
Okay, but just like your CC can't swipe themselves, your phone can't unlock itself. Only you can do that.

Yes, but there are lots of times I unlock my phone unrelated to using GP. OTOH I pretty much never pull out my credit card unless I intend to use it.
 
Yes, but there are lots of times I unlock my phone unrelated to using GP. OTOH I pretty much never pull out my credit card unless I intend to use it.

Still trying to understand what the actual concern is. I understand that unlocked the NFC is accessable but what would access it?
 
Still trying to understand what the actual concern is. I understand that unlocked the NFC is accessable but what would access it?

Most likely nothing, but there's some small percentage chance greater than zero that something could. Point is permission to access GP should have the same level of security and permissions as banking and password apps. If I've fingerprint unlocked my phone why am I required to FP again to access Lastpass?
 
Yes, but there are lots of times I unlock my phone unrelated to using GP. OTOH I pretty much never pull out my credit card unless I intend to use it.

I think we're in a individual user case difference. I don't use my phone for anything else as a cashier is telling me my total while I'm holding my phone mere centimeters from the NFC reader. Perhaps you do that, so GP paying your total is inadvertent and unexpected in your case.
 
Most likely nothing, but there's some small percentage change greater than zero that something could. Point is permission to access GP should have the same level of security and permissions as banking and password apps. If I've fingerprint unlocked my phone why am I required to FP again to access Lastpass?

OK, I see.

What's funny is with my watch it annoys me because with Pay enabled I have to use a pin with my watch.
 

Trending Posts

Forum statistics

Threads
955,449
Messages
6,964,826
Members
3,163,281
Latest member
Andmyaxe90