Zorro67 Posted December 14, 2008 Share Posted December 14, 2008 reposted from thread http://forum.whmcs.com/showthread.php?t=16269 (that thread was getting off topic for it's location) The only way to not care about PCI-DSS or PA-DSS is to use PayPal, Google Checkout, Mail-In payments, or take the CC # over the phone. A question on this; if I take a payment over the phone, and then use a credit card processor like outlook/paypal on my pC, that would mean i would need to make sure that my PC is itself compliant, wouldn't I, even though I am not the payment processor? 0 Quote Link to comment Share on other sites More sharing options...
handsonwebhosting Posted December 14, 2008 Share Posted December 14, 2008 Yes. Any time you handle customer information you must meet the requirements. It's not only for online usage, but any time your hands (or computers) touch the credit card information. Even the storage of the card info on a piece of paper, you must secure those papers and/or shred when done using. PCI Compliance is a lot more than just the web server and software. It also covers general business practices also. 0 Quote Link to comment Share on other sites More sharing options...
Recommended Posts
Join the conversation
You can post now and register later. If you have an account, sign in now to post with your account.