Paypal requires Hikashop to be PCI DSS Compliant

  • Posts: 21
  • Thank you received: 2
9 years 1 month ago #216290

-- HikaShop version -- : 2.6.0

Hi,

I received the following email this morning:

As your business accepts card payments, we need to know that you're complying with the Payment Card Industry Data Security Standard (PCI DSS). This is a minimum security standard established and enforced by Visa™ and MasterCard® to protect businesses and consumers.

What does this mean for me?

As you have integrated PayPal Website Payments Pro through a shopping cart provider, you will need to contact your provider to find out whether or not the cart you're using is PCI DSS compliant. If it isn't, you or your cart provider will need to take steps to become compliant and provide us with confirmation before 03-Dec-2015.

What will happen if I don't take steps to become PCI DSS Compliant?

If we don't receive confirmation from you or your cart provider about the steps you're taking to become compliant before 03-Dec-2015, we may have to begin putting limitations on your business's PayPal account. So it's important you contact your provider as soon as you can to avoid any disruption to your use of Website Payments Pro and your ability to accept card payments.

We understand this process can be daunting, but becoming PCI DSS compliant is a required industry regulation that can help protect your reputation and build trust with your customers. It will also reduce the potential for incurring substantial fines from Visa™ and MasterCard®.


So, as per the topic title is Hikashop PCI DSS compliant?

Thanks

Please Log in or Create an account to join the conversation.

  • Posts: 82867
  • Thank you received: 13374
  • MODERATOR
9 years 1 month ago #216319

Hi,

The question is not really relevant.
It's not about HikaShop being compliant or not. It's about your website/web server and your procedures being compliant.
And there are a lot of things you need to check for that.
These measures include implementing quarterly scans and audits, passing security assessments, building and maintaining a secure network, and other controls.
The best in that case is to have professionals in the PCI compliance field to help you with that.
Regarding HikaShop itself, we didn't pass any certification regarding that. HikaShop is compliant as long as you don't use a payment plugin where the credit card information is asked on your website.
If you do, then you need to make sure that your server/procedures are properly secured and that is not something we can do for you.

Please Log in or Create an account to join the conversation.

Time to create page: 0.054 seconds
Powered by Kunena Forum