|
|
|
|
|
by aj_n
3727 days ago
|
|
> Most payment gateway have a security mechanism to ensure the response from payment server have its integrity remain intact. I've definitely seen SSL pinning used to this effect. The simple solution to Dominos' problems seems like a server-verifiable transaction token that coming from DataCash (or whatever gateway service). I agree that client-side payment processing isn't wrong -- in fact, it makes more sense than attempting PCI compliance on their middleman server. |
|