We are using your plugin on a website sponsored by the University of Minnesota and need to provide documentation on PCI Compliance before we can launch the site.
We will be using the Authorize.net AIM for processing credit cards and we’ve been asked for documentation specifically on how credit card numbers are handled by the EE plugin. Are credit card numbers stored in a temporary variable, and purged once a transaction is complete, or are they stored in a different manner? How long is this data kept / how is the security of these numbers ensured (we will be addressing the security of our website / host separately).
Do you have any documentation you can direct me to? Thank you.
We do not store the full card details through any of our payment gateways.
For Authorize.net AIM, the last four of the card number is stored and that is to help the event organizer / merchant for referencing a transaction for a registration.
Thanks. Do you have any kind of documentation reflecting this that we can file with the University. If you can’t direct me to a specific document, it there a person I can put our compliance officer in touch with?
The support post ‘Authorize.net AIM PCI Compliance’ is closed to new replies.
Have a question about this support post? Create a new support post in our support forums and include a link to this existing support post so we can help you.
Support forum for Event Espresso 3 and Event Espresso 4.