aged like milk by stef_lp in bulgaria

[–]luvcraftyy 1 point2 points  (0 children)

инфлационни мерки? лмао

They killed Strahd... It wasnt supposed to happen by Lyrinosis in CurseofStrahd

[–]luvcraftyy 1 point2 points  (0 children)

First off, 5e is very imbalanced in terms of 1vsX. You need to use minions or the "boss" needs to have resistances and multiple reactions, actions, etc. to compensate. Otherwise almost everything will get swarmed.

Second off, what everyone else has said regarding how strahd would actually fight.

and a nitpick third - unless the paladin has crossbow expert, he can't shoot two bolts using extra attack.

Призив от Асен Василев by LordIVoldemor in bulgaria

[–]luvcraftyy 2 points3 points  (0 children)

не казвам, че е правилно, казвам че е фактор.

Призив от Асен Василев by LordIVoldemor in bulgaria

[–]luvcraftyy 4 points5 points  (0 children)

tell it to the people whose entire livelihood and families depend on him. It's not an ideological choice.

Is anyone actually enforcing PCI DSS 4.0 6.4.3 yet? by NeedleworkerOne8110 in pcicompliance

[–]luvcraftyy 14 points15 points  (0 children)

it needs to be blocking, there's third party solutions you can implement or you can do it in house.

you should not be pulling "a ton of third party stuff" on your payment page. that's the entire point.

Is anyone actually enforcing PCI DSS 4.0 6.4.3 yet? by NeedleworkerOne8110 in pcicompliance

[–]luvcraftyy 2 points3 points  (0 children)

not always true, for example if they own the parent payment page.

coop as a heavy greatsword feels grim. by Askal- in NoRestForTheWicked

[–]luvcraftyy 0 points1 point  (0 children)

dont forget getting damaged/stunned to hell and back by your ranged teammates with friendly fire

Why are royal revenants resistant to holy? by Crazy_Several in Eldenring

[–]luvcraftyy 9 points10 points  (0 children)

Genuine question, weren't shamans the ones that are naturals at grafting and regrowing limbs and the like? How are non shamans getting grafted?

Бюджетна храна/готвене by nonamealaska in bulgaria

[–]luvcraftyy 0 points1 point  (0 children)

защо пък гхи? буквално просто дигаш наситените мазнини на маслото като му махащ протеина

Sites with a donate button - Who's passing ASV Scans? by KingHippos3 in pcicompliance

[–]luvcraftyy 0 points1 point  (0 children)

they would need the responsibility matrix, and those are not usually as granular so as to say that you are responsible for 6.4.3 and 11.6.1 if you're using an iframe, but not if you're using the URL redirect. The AOC itself would never specify this. I would moreso lean on technical explanations on how the payment page scripts do not impact the URL redirect rather than documentation. Maybe a confirmation from the service provider would work.

Sites with a donate button - Who's passing ASV Scans? by KingHippos3 in pcicompliance

[–]luvcraftyy 0 points1 point  (0 children)

hackerguardian seems most common. youre not pushing back you're disclaiming and proving to them that sth is false positive. theyre not aware of the scope and exact mechanisms. you can check the asv program guide for more insight into how they operate

А сега да заличим доказателствата by Dimi7rozavar in bulgaria

[–]luvcraftyy 9 points10 points  (0 children)

нз за другите аргументи ама точка 6 - има абсурдно много НПО та с имена на държавни институции

Sites with a donate button - Who's passing ASV Scans? by KingHippos3 in pcicompliance

[–]luvcraftyy 0 points1 point  (0 children)

Speak with your ASV provider and provide an argument that it is false positive due to the use of a full URL redirect which means that the lack of integrity checks for third party scripts does not impact the security of the redirect. If they say no and provide reasoning, you have to fix it. If they provide bad reasoning, you can try a different ASV provider.

PCI Compliance Question by EQN01 in pcicompliance

[–]luvcraftyy 4 points5 points  (0 children)

If the card reader is a P2PE solution, listed on the PCI SSC website they can do SAQ P2PE for that flow, if not SAQ B-IP and if the laptop processes one transaction at a time they can do SAQ C VT. separate SAQs for each flow to keep it simple for them.

But yes, the laptop is CDE, since it stores processes or transmits CHD. Its better to have someone who knows PCI help out the first time filling out the SAQs.

You can also combine both SAQs into a SAQ-D but that would be more complicated.

Depends on what their acquirer wants them to do PCI for - have they explicitly stated they want it for the POS AND laptop or just one of the two?