Deliver one-time passwords and TAC codes through approved WhatsApp authentication templates. Use WhatsApp alongside SMS to support customers with different connectivity and messaging preferences.
WhatsApp OTP requires an active WhatsApp account and internet access. SMS does not require a messaging app or mobile data. Compare destination rates, delivery results and customer needs when choosing your authentication channels.
WhatsApp OTP uses a data or WiFi connection. Delivery time depends on recipient connectivity and platform availability.
Offer WhatsApp to customers who use it and retain SMS for recipients who prefer mobile-network delivery.
WhatsApp works on WiFi — customers in areas with poor GSM coverage but WiFi access can still receive their OTP.
Your verified business name and profile appear on the OTP message — customers trust it more than an unknown SMS sender ID.
Include your logo, business name, and formatted OTP instructions — not just a plain text SMS.
Discuss fallback requirements with our team and define retry and expiry behaviour in your application.
Use the documented authentication API for your chosen channel. Confirm the implementation needed for switching between WhatsApp and SMS.
Competitive per-message pricing for WhatsApp OTP delivery in Malaysia — visit isms.com.my for rates.
Login verification, transaction TAC, fund transfer approval, and account recovery via WhatsApp.
Account registration, checkout verification, and payment confirmation OTP.
Loan application verification, KYC identity check, and disbursement approval codes.
Policy purchase confirmation, claim submission verification, and agent login OTP.
User registration, password reset, and two-factor authentication for app login.
Viewing booking confirmation, document submission verification, and buyer authentication.
Your system calls the Mobiweb WABA API with the customer phone number and OTP code.
The OTP is delivered to the customer via an approved WhatsApp template message with your business name.
Customer opens WhatsApp, reads the OTP, and enters it in your app or website.
Your system calls the verification endpoint to confirm the OTP is valid and within expiry time.
Full API documentation available at our API Developer Hub — code samples in PHP, Java, C#, NodeJS and more.
Yes, WhatsApp OTP only works if the recipient has WhatsApp installed and active on their mobile number. We recommend configuring SMS OTP as a fallback for customers without WhatsApp.
WhatsApp OTP is used by financial institutions in Malaysia as an additional authentication channel. Compliance with BNM guidelines is the responsibility of your organisation as the data user. We recommend consulting your compliance team.
Typically within seconds for customers with active internet connectivity. WhatsApp delivery depends on the recipient having an active data or WiFi connection.
Yes. WhatsApp OTP messages use pre-approved templates. We handle the template submission and approval process with Meta on your behalf.
Expiry is configurable in your system. We recommend 5-10 minutes for security. The Mobiweb API supports configurable expiry and retry limits.
Get help with WABA setup, authentication templates and API access. Typical onboarding takes 1β3 business days, subject to account readiness and approvals.