Jump to content

Foolow-on discussion about PA-DSS Certification


Zorro67

Recommended Posts

reposted from thread http://forum.whmcs.com/showthread.php?t=16269

 

(that thread was getting off topic for it's location)

 

The only way to not care about PCI-DSS or PA-DSS is to use PayPal, Google Checkout, Mail-In payments, or take the CC # over the phone.

 

A question on this; if I take a payment over the phone, and then use a credit card processor like outlook/paypal on my pC, that would mean i would need to make sure that my PC is itself compliant, wouldn't I, even though I am not the payment processor?

Link to comment
Share on other sites

Yes. Any time you handle customer information you must meet the requirements. It's not only for online usage, but any time your hands (or computers) touch the credit card information. Even the storage of the card info on a piece of paper, you must secure those papers and/or shred when done using.

 

PCI Compliance is a lot more than just the web server and software. It also covers general business practices also.

Link to comment
Share on other sites

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

  • Recently Browsing   0 members

    • No registered users viewing this page.
×
×
  • Create New...

Important Information

By using this site, you agree to our Terms of Use & Guidelines and understand your posts will initially be pre-moderated