Jump to content

Daniel B

Members
  • Posts

    682
  • Joined

  • Last visited

  • Days Won

    2

Posts posted by Daniel B

  1. just getting back (permanently, finally...) from a bit of a hiatus.  I was using this before, and while setting up a new Blesta install I wanted to see if this plugin is still needed (not sure if it's been added to the core module yet).

  2. I Found linux desktop distro are more easy to use than Microsoft

     

    If only they didn't have compatability issues with a few of the programs and games I use, I'd run linux all the time.../sad

  3. Your ability to get approved for a merchant account etc is something I didn't think of, but surely there's no way you could get fined unless your payment processor required required you to be compliant and mentioned the fines in it's terms and conditions?

     

    The fine would come from the credit networks...most likely it would be levied on the payment processor for allowing you to use them without being PCI compliant, which I would guess would inturn be passed on to you.  The fine wouldn't be the biggest issue, very true...but the inability to ever get another merchant account again would be a bit difficult to swallow. (of course, this is all "worst case" stuff...not like they actually due complience checks on the "little fish").

  4.  

    The PCI security standards are not the law.

     

    While they may not be federal laws (yet...though they already are in some states), PCI is required by all major credit cards networks (Visa, Master Card, Discover, American Express)...and if you are found in breach of them you can face hefty fines and expulsion from said credit networks.  Not complying with PCI Standards and being caught could easily mean that you'll never be able to accept credit cards or get approved for a merchant (or non-merchant) account again.  If you get blacklisted by the credit networks you are screwed as a business.

     

    It's not something that many sole proprietor's or small business think about, but PCI Compliance is a serious issue and should be viewed as such.

  5. What's the purpose of having an unlimited coupon?  If you have a coupon to provide a discount, and it can be used an unlimited amount of times...why not just lower the price of the item...?

     

    (I know, marketing purpose...not everyone will know about the coupon, etc...just playing devil's advocate here :))

  6. I was a bit confused by all the stuff happening in that thread as well, but the way I understood it was that in it's current state, the Stripe Module leaves the onus of PCI compliance on you, because it sends card information to the server to be tokenized before passing it along to stripe (since it doesn't use stripe.js).  There is a fix/workaround item in progress, looks like it's assigned to 3.5.  Core-1085

     

    Blesta does not store the credit card details, but it does send them to the server to be tokenized on the initial charge.  The fact that it has to send the card details to the server to tokenize them is the step that requires your server to be PCI Compliant, whereas if we could use stripe.js, you wouldn't have to worry about PCI compliance because stripe would be responsible for it since the card info would never touch the Blesta server.  So, once the above task is completed, using stripe.js will be possible.

×
×
  • Create New...