Aug 30 2005
Visa PCI Standards
Visa Payment Card Industry Data Security Standards
If you haven’t already read this document, you probably should. This is a minimum standard set forth to protect your credit card data when you use it to purchase something from a merchant. And it bears repeating, minimum standards. I hope most merchants use this as a starting point and continue from there. The folks at CardSystems Solutions Inc. forgot several of the points in this document, such as:
3.1 Keep cardholder storage to a minimum.
I’m sure keeping live customer data for testing breaks this and several other rules.
One Response to “Visa PCI Standards”
Too right, Martin. See http://www.openservice.com/blogs/2005/06/mastercard-pci-sdp-framework.jsp Got a lot of comments on this one - not everyone agreed with my cynical and strict interpretation of the standards and their enforcement.