HomeHome Product Discus... Product Discus...SmithCartSmithCartSecurity Question about Manual ProcessingSecurity Question about Manual Processing
Previous
 
Next
New Post
10/26/2010 11:00 AM
 

How safe is the user's credit card information when utilizing the manual processing method? Is this scrambled in the databse? What are the risks? Does the website need to be on SSL?

Hope not.. Just curious before I face this issue.

Thanks

 
New Post
10/26/2010 11:25 AM
 

The credit card information is 3DES Encrypted in the database.

As long as someone doesn't have "Administrator" role on your portal, they cannot see the credit card information (This has been discussed, having a couple of other "Roles", one for order review only without credit card information, and one that allows credit card information without administrative status.... I know it has been discussed.)

ANY web site that is going to be taking credit cards should have a security certificate (SSL).

 
Previous
 
Next
HomeHome Product Discus... Product Discus...SmithCartSmithCartSecurity Question about Manual ProcessingSecurity Question about Manual Processing