Hacker News new | ask | show | jobs
by rohithkp 1642 days ago
Any card details that are being stored in the merchant's database need to be tokenised. It applies to all entities who are retrieving card details from customers, irrespective of PCI/DSS compliance.