No. PCI has rules that state how to store data and what you can store. I work for a Tier 1 company and all the data stored in our database is encrypted and then deleted after authorization. A good place to start is here. https://www.pcisecuritystandards.org/index.shtml
No. PCI has rules that state how to store data and what you can store. I work for a Tier 1 company and all the data stored in our database is encrypted and then deleted after authorization. A good place to start is here. https://www.pcisecuritystandards.org/index.shtml