|
|
The PCI DSS is a set of comprehensive requirements for enhancing payment account data security. It was developed by the founding payment brands of the PCI Security Standards Council (American Express, Discover Financial Services, JCB, MasterCard Worldwide and Visa International), to help facilitate the adoption of consistent data security measures globally. The PCI DSS includes requirements for security management, policies, procedures, network architecture, software design and other critical protective measures intended to proactively protect customer account data.
As a vendor that accepts credit cards, we are required to be compliant with DSS. Daisy Twist has taken several steps to ensure the safety of any credit card information provided to us and has implemented the following new procedures to safeguard your data:
- The implementation of our online payments system at www.daisytwist.com/payments. This system uses a secure socket (SSL) implementation to ensure the safety of the data communicated in the session. This is the safest method of payment to us because we never see or store your full credit card number.
- Our website and servers have been scanned for vulnerabilities by Trustwave to ensure compliance and to identify any potential security threats from hackers.
- Our field staff is required to run your credit card payments on your site to ensure that they are not taking your credit card data with them. Our field procedure is to write down the confirmation code from the transaction and the last four digits of your credit card only.
- Our office staff is instructed to shred any credit card numbers taken over the phone immediately after the transaction is complete.
- We are no longer storing your credit card information in our systems to be run for balance payment. Although this may seem to be an inconvenience for some of our long term clients who were used to that practice, we are confident that the safety benefits will outweigh this inconvenience.
We are proud to offer this additional level of safety to our clients. If you have any questions regarding Daisy Twist’s level of PCI DSS compliance, please click the Trustwave logo above or contact us at our office.





