Skip to content

Update section on PCI compliance

homotechsual requested to merge github/fork/John-B/patch-8 into master

Created by: John-B

Corrects the PCI guidance, which has been wrong since the advent of PCI 3 on 1 Jan 2015. Also changed this and next section from h3 to h2 because it was a sub-section of an h2 on using SSL, and PCI compliance is no longer just a sub-topic of the decision to use SSL. I have deliberately not gone into Stripe and Braintree, which are (allegedly) compliant under SAQ A when using iframes for the card details form. That is not really a CiviCRM topic, and is anyway controversial.

Merge request reports

Loading