Quote:
We have a customer that is using a payment module like authorize.net (cc info entered on their website) and they recently passed their PCI compliance audit
|
It isn't being enforced by all Merchant Banks yet - seems they are as confused as everyone else. I have some clients who were immediately made to switch, others haven't been forced to yet.
Also, don't confuse a PCI compliance server scan with PA-DSS compliance - a PA-DSS compliant cart can't be picked up by a scan (yet), it is self-reported.