<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: CC Data, PHP &amp;amp; PRG, and PCI Compliance in Integration and Testing</title>
    <link>https://community.developer.cybersource.com/t5/Integration-and-Testing/CC-Data-PHP-amp-PRG-and-PCI-Compliance/m-p/58368#M33022</link>
    <description>&lt;P&gt;Hello&amp;nbsp;&lt;a href="https://community.developer.cybersource.com/t5/user/viewprofilepage/user-id/21096"&gt;@BC2016Genomics&lt;/a&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;If you wish to use your own form but lower your PCI Scope, you can use &lt;A href="https://developer.authorize.net/api/reference/features/acceptjs.html" target="_self"&gt;Accept.js&lt;/A&gt;, a JavaScript library that allows you to accept payments without any sensitive card data going through your servers.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Another option would be to use our &lt;A href="https://developer.authorize.net/api/reference/features/accept_hosted.html" target="_self"&gt;Accept Hosted&lt;/A&gt; but that would require that you use our form instead of yours.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Richard&lt;/P&gt;</description>
    <pubDate>Tue, 06 Jun 2017 14:05:21 GMT</pubDate>
    <dc:creator>RichardH</dc:creator>
    <dc:date>2017-06-06T14:05:21Z</dc:date>
    <item>
      <title>CC Data, PHP &amp; PRG, and PCI Compliance</title>
      <link>https://community.developer.cybersource.com/t5/Integration-and-Testing/CC-Data-PHP-amp-PRG-and-PCI-Compliance/m-p/58365#M33021</link>
      <description>&lt;P&gt;Hi, I need some sanity checks on this, using the PHP API.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;My current test setup is:&lt;/P&gt;&lt;P&gt;- On the checkout page, CC info (number, expiration, CCV) is filled in on a form, then POSTed back using Post-Redirect-Get.&lt;/P&gt;&lt;P&gt;- The CC info is&amp;nbsp;processed through the authOnlyTransaction function, returns either a transactionID&amp;nbsp;or error code.&amp;nbsp;&lt;BR /&gt;- POSTed data is unset, then either displays an error script or captures the transactionID and redirects to the confirmation page.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;After some reading, my understanding is any POSTed CC info is in violation of PCI compliance (the POST data is stored on our server, regardless of length of time).&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Is there a PCI-compliant practice to use PHP and form-submission?&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 06 Jun 2017 02:16:26 GMT</pubDate>
      <guid>https://community.developer.cybersource.com/t5/Integration-and-Testing/CC-Data-PHP-amp-PRG-and-PCI-Compliance/m-p/58365#M33021</guid>
      <dc:creator>BC2016Genomics</dc:creator>
      <dc:date>2017-06-06T02:16:26Z</dc:date>
    </item>
    <item>
      <title>Re: CC Data, PHP &amp; PRG, and PCI Compliance</title>
      <link>https://community.developer.cybersource.com/t5/Integration-and-Testing/CC-Data-PHP-amp-PRG-and-PCI-Compliance/m-p/58368#M33022</link>
      <description>&lt;P&gt;Hello&amp;nbsp;&lt;a href="https://community.developer.cybersource.com/t5/user/viewprofilepage/user-id/21096"&gt;@BC2016Genomics&lt;/a&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;If you wish to use your own form but lower your PCI Scope, you can use &lt;A href="https://developer.authorize.net/api/reference/features/acceptjs.html" target="_self"&gt;Accept.js&lt;/A&gt;, a JavaScript library that allows you to accept payments without any sensitive card data going through your servers.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Another option would be to use our &lt;A href="https://developer.authorize.net/api/reference/features/accept_hosted.html" target="_self"&gt;Accept Hosted&lt;/A&gt; but that would require that you use our form instead of yours.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Richard&lt;/P&gt;</description>
      <pubDate>Tue, 06 Jun 2017 14:05:21 GMT</pubDate>
      <guid>https://community.developer.cybersource.com/t5/Integration-and-Testing/CC-Data-PHP-amp-PRG-and-PCI-Compliance/m-p/58368#M33022</guid>
      <dc:creator>RichardH</dc:creator>
      <dc:date>2017-06-06T14:05:21Z</dc:date>
    </item>
  </channel>
</rss>

