Welcome, Guest. Please Login.
05/19/25 at 09:31:32
News:
Home Help Search Login


Pages: 1
Send Topic Print
Contact Manager Charge Card Info (Read 425 times)
klconard
Browser
*




Posts: 6
Contact Manager Charge Card Info
05/23/05 at 09:28:03
 
Is it possible to put an additional field in the credit card area in contact manager for the verification code from the back of the credit card (usually a 3 or 4 digit number).  Can it possibly be done on a future update?
Back to top
 
 
  IP Logged
aricon
Active Member
*****


Systems
Consulting-See
website for
products!

Posts: 1283
Gender: male
Re: Contact Manager Charge Card Info
Reply #1 - 05/23/05 at 17:23:32
 
You should check with the bank(s) you use for your merchant accounts, keeping this information is usually against the merchant agreement.
Back to top
 
 

Sincerely,

Lorne Rogers
President
Aria Consulting & Implementers Ltd.
Phone: (780) 471-1430
Fax: (780) 471-4918
E-mail: lrogers@ariaconsulting.net
Email WWW   IP Logged
kevind
Active Member
*****


I was more than
willing to
"pony up",
how b'out U?

Posts: 634
Gender: male
Re: Contact Manager Charge Card Info
Reply #2 - 05/24/05 at 04:54:40
 
This subject came up before.
 
Subsequenty, I recieved another merchant mailing from Discover.  It was confimed that they expressly prohibit this code being stored.
 
Section 12.7 of http://www.discovernetwork.com/common/image/operat_reg.pdf
States the following:
You must not retain any CID data for any Card transaction or any Cardmember, in your records or otherwise, for any reason, including recurring billing transactions described in Section 5.3.  Furthermore, the CID must not be recorded on Sales Data or any other evidence of the Card transaction.
 
This Does bring up another requirement.
Section 12.6 states:
Card Account numbers and Card transaction data that you store must be stored in a secure environment that is protected by information security technologies such as encryption, firewalls and access controls.
 
This tells me that storing the credit card information in plain text form in the customer record is prohibited.
 
One solution to this is for ISTech to incorporate RSA Encryption on just this field.  This would also provide another level of access control to the CC information in addition to masking the plain text CC information from Database Maintenance and ODBC access.
Back to top
 
 

Kevin Damke
Spectronics Corporation
ISTECH 2004.1 7/26/13 SP1 - 20 user
Evo-ERP Build 7/25/13 T7 -7i R6 - 3 user
(Prev version was 2004.1 10/24/12)
(All Patches Installed as of 7/26/13)
Pervasive 2000i SP4 - Crystal Reports V10
Email WWW   IP Logged
Pages: 1
Send Topic Print