Hacker News new | ask | show | jobs
by kjs3 3942 days ago
If you develop a site that takes payment via credit card, even when processed by a third party processor, it's pretty irresponsible not to be familiar with it. Even if you're only attesting to being a SAQ A merchant, you'll want to know why. There's not that much too it, and it's really the minimum you should be thinking about.

That said, we'd all live in a better world of every web developer knew the OWASP recommendations inside and out. I can dream.