Flexible Control Over AVS and CVV Validations in Odoo

Payment security checks like “Address Verification System (AVS)” and “Card Verification Value (CVV)” are vital tools for fraud prevention. However, some business partners, such as Government purchasing agents, might not provide billing addresses and CVV codes.
Previously, businesses had to choose between disabling AVS and CVV checks for all transactions (reducing fraud protection) or risk being unable to process legitimate payments without full billing details.
Steersman has developed a feature in Odoo that gives businesses in-depth control over AVS and CVV requirements. With this functionality, authorized users can selectively disable these checks when processing payments, without changing global CardPointe settings.
Key Capabilities
-
User Permissions:
- New security group “Can Disable AVS/CVV” grants specific users (ex., accounting or designated sales/admin staff) the ability to bypass AVS or CVV checks.
- Controlled at the user level to prevent misuse.
- Wizard Checkboxes:
-
When adding or charging cards in Odoo, authorized users will see checkboxes for:
- Disable AVS
- Disable CVV
- These options appear only for users in the “Can Disable AVS/CVV” group.
-
-
Flexible Application:
- Works for transactions across invoices, sales orders, and customer accounts.
- Supports both token creation and direct charges.
- Ensures legitimate payments (like government or EDI orders without billing addresses) are not blocked.
-
Website Compatibility:
- If customers tied to this setting add cards via the website, their tokens remain valid without requiring billing addresses.
- Prevents disruptions while still maintaining fraud checks where appropriate.
Business Benefits
- Prevents unnecessary payment failures on GSA/EDI and special phone orders.
- Maintains AVS/CVV fraud protection for standard customer transactions.
- Reduces the need for risky global configuration changes in CardPointe.
- Gives accounting and sales administrators the flexibility they need while preserving overall security.
Related posts

CardPointe Integration for Website Payment Processing
Steersman's secure CardPointe integration enables distributors to process payments across all sales channels—phone, in-person, website, and EDI—through a single PCI-compliant system within Odoo, with token storage for repeat transactions

Warn (or Block) Users from Editing Contacts Used in Odoo Orders
We’ve added a new feature that protects your order history from accidental changes. Now, if a user tries to edit a contact that has been used on sales orders, deliveries, invoices, or payments, Odoo will alert them or block the edit entirely, depending on their permissions.

Steersman's Payment Enhancements for Odoo ERP
Collect Payments using Card Terminals, Virtual Terminals that allow Manual Card Input, Saved Payment Tokens, ACH, Cash, Checks, etc. for Online Orders, In-Person or Over-the-Phone Sales, and even EDI Orders

B2B Email Marketing in Odoo: Best Practices for Design, Delivery, and List Hygiene
Essential best practices for running effective B2B email campaigns in Odoo—focusing on deliverability, mobile-friendly design, and proper list hygiene. Whether you're sending promotions, product updates, or abandoned cart reminders, you'll learn how to avoid spam filters, protect your sender reputation, and get better results from every send.