PA-DSS

In order to tackle ever-growing concerns relating to card data security the PCI Council has placed mandatory standards on users of payment applications that store sensitive authentication data.  The Payment Application Data Security Standard (PA-DSS) is largely based on Visa’s Payment Application Best Practices (PABP) program.  In order for all merchants to conform to these standards the PCI Council has set deadlines for compliance.

  • Effective from July 1st 2010

Acquirers must ensure that all new merchants only use PA-DSS compliant applications

  • Effective from December 31st 2012

Acquirers must ensure that all merchants using payment applications must either be fully PCI DSS compliant or using a PA-DSS compliant application.

Read our PA-DSS Fact Sheet for further information