Quote:
Originally Posted by Dongan
What happens when your web server can not meet standards to process Credit Cards? This is where the problem comes, not with SagePay.
|
With the SagePay iframe approach the customer broswer posts the credit card data direct to SagePay's servers. So your server never processes, transmits or stores credit card data and is not subject to PCI-DSS requirements.