PCI Compliance wants to know if we use Direct Post

  • Posts: 190
  • Thank you received: 2
9 years 3 weeks ago #219618

-- url of the page with the problem -- : www.veggievore.com
-- HikaShop version -- : 2.6.0
-- Joomla version -- : 3.4.5
-- PHP version -- : 5.6.9

I am hoping you might be able to help in a bit of a gridlock. We are using Braintree Payments for the majority of our Credit Card Processing. The folks at Braintree have contacted us to go through a PCI Compliance survey with SurveyMetrics.com. We are most of the way through that process but they are now asking us if we use Transparent Redirect or Direct Post. Apparently there are other options as well. Braintree verified that we are NOT using Transparent Redirect.

We are using the braintree payment plugin from 3by400.com and I have asked them if we are using the Direct Post method. Their response was as follows:

"In 2013 Braintree switched from offering a Transparent Redirect method to what is known as the Braintree.js method. This is what our plugin uses.

The payment process is encrypted by Braintree.js and posted to the Braintree server. No payment data passes through, nor is stored on your website. "

Anyhow, I called Braintree and told them that they should be the ones to give me the answer to this question. They told me that I should push back on 3by400 to get them to tell me if their plugin uses the Direct Post. But, it appears that 3by400 is unable to answer this question.

Is this a question that you are able to answer?

Our site is at www.veggievore.com

Thank you, Sean Carney

Last edit: 9 years 3 weeks ago by scarney.

Please Log in or Create an account to join the conversation.

  • Posts: 26159
  • Thank you received: 4028
  • MODERATOR
9 years 3 weeks ago #219626

Hi,

:huh:

As you right mentionned, the Braintree plugin is provided by "3by400".
The HikaShop team does not have any single knowledge about that plugin code.
We never had that plugin and we do not know how it is working.

So ; I really don't know how we could be able to answer to your question for something we do not know and we did not developed.
The only one who can is the developer of the plugin, the team who is selling it... And that's just not us...

Regards,


Jerome - Obsidev.com
HikaMarket & HikaSerial developer / HikaShop core dev team.

Also helping the HikaShop support team when having some time or couldn't sleep.
By the way, do not send me private message, use the "contact us" form instead.

Please Log in or Create an account to join the conversation.

Time to create page: 0.060 seconds
Powered by Kunena Forum