PCI compliance

TannersCreek
Contributor
Contributor

I used to use a different credit card processor and needed to update myn PCI compliance once a year.  Now I am just using PayPal, so do I need to pay Security  Metrics to be in compliance or is that done by PayPal?

Login to Me Too
6 REPLIES 6

snowshoe
Frequent Advisor
Frequent Advisor

Depends on which PayPal product you plan to use.  Payments Standard, no, Payments Pro, yes.

Login to Me Too

TannersCreek
Contributor
Contributor

its a standard business account.

Login to Me Too

snowshoe
Frequent Advisor
Frequent Advisor

Should be fine.

Login to Me Too

TannersCreek
Contributor
Contributor

Thanks.  Security Metrics disagrees, but I think they are just looking for the money. Thanks.

Login to Me Too

RXLabels
Contributor
Contributor

I'm wracking my brain to determine which type account mine is.  I think it is Standard, but I cannot find anywhere where it says so one way or the other for certain.   

 

I used use First Data and the PCI requirements for my tiny business drove me away.   These people from SecurityMetrics are relentless and are now quoting my state's legal codes at me.  I'd love to be able to stop ignoring them and finally just tell them to bugger off.

 

I only use the system one way.  I get CC numbers by phone and dial into VM to place the payments from my home-office computer.

Login to Me Too

TNGWeb
New Community Member

The nasty is, YES, regardless, you are still making or creating sales online. According to https://pcissc.secure.force.com/faq/articles/Frequently_Asked_Question/Does-PCI-DSS-apply-to-merchan... you need a minimum of SAQ-A self compliance. You may also need to put your site/server through several security audits quarterly. I own a hosting company and just finished with McAfeeSecure to meet PCI/DSS and Server security.

Login to Me Too

Haven't Found your Answer?

It happens. Hit the "Login to Ask the community" button to create a question for the PayPal community.