Home > PA-DSS Compliance
PA-DSS Compliance and Ecommerce Templates
From Version 6.1 of Ecommerce Plus from Ecommerce Templates we are pleased to announce the software is officially certified PA-DSS compliant. Certification is provided by the PCI Security Standards Council.
What is PA-DSS?
PA-DSS is a certification process to ensure the security of data by requiring shopping cart and payment applications to adhere to an industry standard initially created by Visa. This includes the non-storage of sensitive data such as credit card numbers and validation code, application activity logging, secure logins and vulnerability testing amongst many other things.
Why is PA-DSS compliance important?
Your ecommerce software is just one factor in being PCI compliant as it also involves your hosting company and payment processor for example. If you are not using a PA-DSS compliant shopping cart like Ecommerce Templates, it is unlikely you will be PCI compliant. This can result in higher fees, fines and even revocation of the ability to take online payments.
It is also means that you are working with a vendor that takes your online security extremely seriously. Certification is not a simple rubber stamp process but takes many weeks of code changes, testing and documentation to have the application approved.
What does it mean for your store?
Ecommerce Templates has completed the PA-DSS compliance certification to provide an industry standard level of security for you store. Many of the changes will be in the background but you will notice some new additions and features
- Activity and event logging in the control panel dashboard
- Forced minimum password length with aplha-numeric content
- Periodic forced password change
- Maximum number of incorrect password attempts
- Automatic logging off from control panel after a period of inactivity
- No card holder data stored
- All passwords are transmitted and stored in hashed form
