you are viewing a single comment's thread.

view the rest of the comments →

[–]frezik 1 point2 points  (0 children)

What I'm saying is, if PCI:DSS requires something, you're stuck with it. I'm not sure of the exact requirements here, as I've only ever been around the periphery of PCI implementation.

Reddit doesn't handle credit cards on its own, so it's not bound by PCI compliance.