Saturday 16 January 2010

A word about security

Some of you may have noticed that we have now switched off the "standard" credit card checkout option and that you now have to go through the 3d secure checkout instead.

We have had to switch off the standard card checkout as on this system we used to manually enter your card details into card machine - we are no longer allowed to do this because of PCI-DSS compliance (look it up - its very boring but if we dont comply we get fined!)

So whats 3D secure, well if you have heard of "verified by visa", where your card provider asks you to regsiter some memorable data against the card for online transactions such as an online password - thats it, if you havent done this already it will ask you to do it during checkout.

So just to set peoples minds at rest, when you enter your card details on our site its going through a secure HTTPS server with Paypal who are PCI DSS comlpliant, they process the transactions and we never ever see your card details.

If you phone us to pay for an order, we now type this straight into a card terminal and no record of the card details are kept.

we are completely secure as our webiste providers, payment providers and the systems we have in place here comply to the PCI DSS standards,