Tip from SmartRetry Ensure your billing logic immediately suppresses this token across all automated workflows to avoid network penalty fees for attempting charges on stolen credentials. Transition the customer directly into an interactive dunning flow that requires an entirely different payment method before any services resume.
Mastercard
Mastercard Issuer Response Code 43: Stolen Card
Last updated: September 25, 2026
About 43 - "Stolen card"
Key details
- 43
- Issuer Response Codes
- 43
- Stolen card
What it means
Mastercard issuer response code 43 indicates that the issuing bank declined the transaction because the cardholder has reported the card as stolen. This is a hard, unrecoverable decline, meaning the primary account number (PAN) is permanently blocked by the issuer. In some processing environments, such as Adyen, this is also mapped as a 'Pickup card' response, advising the merchant that the credential is fundamentally compromised.
Classification & retryability
Why does code 43 occur?
- The cardholder reported their physical credit or debit card as stolen to their issuing bank.
- A malicious actor attempted to checkout using compromised card credentials that the issuer has already invalidated.
- The merchant attempted to process an automated recurring billing charge on a stored credential that was recently flagged as stolen.
How to solve 43?
Because the card is permanently blocked by the issuer, you cannot resolve this decline by altering the authorization payload or retrying the credential. Treat the transaction as a hard failure. Suspend any recurring billing schedules tied to this specific PAN and expiration date. To recover the revenue, prompt the customer to provide an alternative payment method or wait for them to update their account with replacement card details from their bank.
Solving as a merchant
Immediately stop any automated retry logic for the affected PAN and expiration date, as required by Mastercard's Transaction Processing Rules for card-not-present transactions. Mark the stored credential as invalid or revoked in your customer vault. If this transaction was flagged in a high-risk scenario, review the customer's purchase history and validate the shopper's authenticity.
Solving as a customer
Contact the issuing bank for further details, confirm the issuance of a replacement card, and provide an entirely different payment method at checkout to complete the current transaction.
Frequently asked questions about this topic
Author
Kyle Regacho
Focused on payment recovery, decline codes, and authorization optimization at SmartRetry. Helps payment teams turn failed transactions into recovered revenue
Read all articles >Articles you may find interesting:
View all
Turning Payment Declines into Revenue with Context-Aware Retry Logic
Blind retries waste fees and damage issuer trust. By analyzing decline codes and timing reattempts around payroll cycles, payment teams can successfully salvage recurring revenue without customer disruption.

Why Payments Fail: Decoding Decline Codes and Modernizing Retry Logic
Surface-level decline messages conceal critical issuer signals. Discover how intelligent retries, network tokens, and behavioral timing protect MID health and systematically recover lost recurring revenue.

Decoding Payment Declines: Turning Authorization Failures into Recovered Revenue
Blindly retrying failed transactions hurts authorization rates and risks network fines. Discover how decoding issuer responses turns card declines into recovered revenue.

The Real Cost of Payment Declines and How to Recover Lost Revenue
Payment failures cost merchants billions in uncaptured revenue and customer churn. Discover how data-driven retries and response code intelligence help teams recover failed transactions and protect conversion.