
What is PCI?
The Payment Card Industry Data Security Standard (PCI DSS) is an information security standard used to handle credit cards from major card brands. The standard is administered by the Payment Card Industry Security Standards Council and its use is mandated by the card brands. The standard was created to better control cardholder data and mitigate credit card fraud.
The main members of the PCI Security Standards Council are the major card brands such as Mastercard, Discover, Visa, JCB International and American Express. On September 7, 2006, they organized to create the PCI DSS, which helps these payment processors and financial institutions reduce the risk of credit card fraud.
When the merchant (e.g., the merchant who accepts the payment card as the payment method for goods and services) carries out a certain number of payments each year OR the company wants a product to be provided and meets their PCI compliance requirements, they have to complete a full PCI DSS Report on Compliance.
Why is PCI important to Shoplazza?
PCI plays a key role for Shoplazza since it acts as a stand-alone report that customers can use to gain confidence that we securely process Customers' Cardholder Data (CHD). Getting PCI compliant is our promise to take every precaution to keep their payment data safe. Shoplazza is committed to working with our customers to ensure their payment data is secure from credit card fraud. Additionally, we are committed to providing our customers with the highest security standards and processes to prevent fraud.
What is in-scope for our Merchant Environment?
Our Merchant scope consists of the following:
- 
Airwallex (Hong Kong) Limited 
- 
Checkout Payments Group Limited 
- 
dLocal Ltd. 
- 
Ebanx Pagamentos Ltda. 
- 
Stripe, Inc 
- 
PayPal Inc 
- 
Adyen B. V (VI) 
- 
Pingpongpay 
- 
WorldPay Inc. 
- 
Shenzhen Oceanpayment Technology Co., Ltd. (Branded as "Oceanpayment") 
- 
Airwallex (Hong Kong) Limited 
- 
Ronghan International Limited (Branded as "PacyPay") 
- 
Photon Dance (Hong Kong) Limited (Branded as "Photonpay") 
- 
AsiaBill Company Limited 
- 
Moneris Solutions Corporation 
- 
Allpay International Limited (Branded as "GoAllpay") 
- 
APG Worldwide Limited 
- 
PMMAX Technology Limited (Branded as "PayerMax") 
- 
Amazon Web Services, Inc. (Branded as "AWS") 
- 
Aliyun Fincloud of Alibaba Cloud Computing Ltd. (Branded as "Aliyun") 
- 
The billing backend services 
- 
Any metals/servers and network devices that support these systems and services. 
What is in-scope for our Service Provider Environment?
Our Service provider environment consists of:
- 
Our entire Core production environment 
- 
Our entire Edge production environment 
- 
This includes all metals/servers/network devices that comprise our production Core and Edge environments. 
PCI DSS at Shoplazza
Our official certification is stated below. For more information, please visit our compliance pages or reach out to our customer service.

 
           
          