Docs

Data Privacy & Security Articles & FAQ

pci, compliance

What is PCI compliance?

'PCI' stands for Payment Card Industry and 'DSS' stands Data Security Standard which is a set of sec

38989385

2021-06-16T20:14:31Z

2023-02-16T12:09:30Z

467

0

0

251164

What is PCI compliance and how to export the Chargebee PCI DSS & PCI DSS AOC certificate?

What is PCI compliance and how to export the Chargebee PCI DSS & PCI DSS AOC certificate?

Scope

How to get Chargebee's PCI DSS certificate?

Is Chargebee PCI DSS certified?

How to get Chargebee's PCI DSS AOC (Attestation of Compliance)?

Summary

PCI DSS - The Payment Card Industry Data Security Standard (PCI DSS) is an information security standard for organizations mandated by card brands and administered by the Payment Card Industry Security Standards Council. It creates an additional level of protection for card issuers by ensuring that merchants meet minimum levels of security when they store, process, and/or transmit cardholder data.

With Level 1 being the most stringent, the magnitude of restriction decreases from Level 2 - 4. Chargebee is Level 1 PCI compliant.

To view and download Chargebee compliance certificates, click Settings > Security > View Certificates and Attestations.

Solution

Chargebee's PCI DSS

Chargebee is a PCI-DSS Level 1 Service Provider and is certified as compliant with the Payment Card Industry Data Security Standard (PCI DSS) v3.2.1.

To view and download Chargebee compliance certificates, click Settings > Security > View Certificates and Attestations.

[[screenshot assets/images/Billing/32xJf6Asf7-OwLqs4qz2UJYTMcuMXDfMjQ.png]](https://s3.amazonaws.com/cdn.freshdesk.com/data/helpdesk/attachments/production/72678565/original/aQhko4AE2gfpMEy2msGrm6ONsaWvdc2eQw.png?1676545678)

Chargebee is a PCI-DSS Level 1 Service Provider.

Security continues to be a hot-button topic thanks to the seemingly endless breaches and leaked card details that hit news feeds with increasing frequency. Chargebee is committed to ensuring that your customers' payment information is constantly protected and they have a superior subscription experience. This standard is reflected in the people, technologies, and processes we employ.

The Payment Card Industry Data Security Standard (PCI DSS) is a proprietary information security standard administered by the PCI Security Standards Council, which was founded by American Express, Discover Financial Services, JCB International, MasterCard Worldwide, and Visa Inc.

PCI DSS applies to all entities that store, process, or transmit cardholder data (CHD) or sensitive authentication data (SAD), including merchants, processors, acquirers, issuers, and service providers. The PCI DSS is mandated by the card brands and administered by the Payment Card Industry Security Standards Council.

Chargebee ensures that your customer's sensitive card information is encrypted and handled in a safe and secure manner. With annual audits and PCI-DSS Level 1 certification, Chargebee protects sensitive data.

Chargebee's PCI DSS AOC (Attestation of Compliance)

You can get this attestation of Compliance by going to your Chargebee site from Settings > Security > View Certificates and Attestations > PCI DSS AOC Download.

[[screenshot assets/images/Billing/hx7BFkx5HqFLhm4tcTkpIgZKRX25HwE7rw.png]](https://s3.amazonaws.com/cdn.freshdesk.com/data/helpdesk/attachments/production/72679235/original/OGp458Q3t9LafNK-uvdMr8ysnw27_4qCgg.png?1676547516)

You can read more about this here.

Was this article helpful?
Loading…