|
|
|
Credit card security and privacy of credit card holder is probably the most significant subject
regarding e-commerce activities and online, real time payments.
Although most of people think that online shopping has high risks regarding security of transmitted information, ie;
credit card number, card holder information, AVS codes etc, in fact, an online, real time transaction is much more
secure than a credit card transaction in a shop, shopping via telesales or by fax, because the information transmitted
online is strongly encrypted using latest, complicated encryption technology... which means none of the transmitted,
sensitive information via secure connection is visible by 3rd party companies.
BMHost's
payment gateway partner, The WorldPay (WP) payment system uses unique security and
fraud prevention systems, latest encryption technology combined with fault tolerant
secure server networks and firewalls to ensure the security and integrity of all of
the sensitive data transmitted during an online transaction.
Additionally, WP web servers uses latest certificates issued by Thawte, a public Certificate Authority.
Thawte will only issue digital certificates to those servers which meet stringent security requirements.
The WorldPay servers meet and exceed these requirements in order to establish one of the most secure and reliable
environment for both the partners and for the customers (shoppers).
Encryption technology
The transfer of the purchase details including credit card number and shopper's personal information
are fully encrypted and digitally-signed. Then, the secure transfer requires a combination of standard
encryption methods such as RSA, PGP and MD5 so that the data is ready to be transferred via secure socket layer (SSL).
Safe environment for the shoppers
Any communication including all checkout procedures are handled by WorldPay on
their own secure servers verified by Thawte -Thawte is a global certificate authority providing
digital certificate products and 128-bit encryption SSL technology. In other words,
WorldPay encrypts all the data in transaction using SSL 128bit, using Thawte digital certificate technology.
Additionally, customers (shoppers) are also protected from fraudulent use of their card.
Shopper's card issuers provide the right for shopper to dispute the purchase if there is a problem
within the service or if the goods/services did not arrive or if the card was used fraudulently
without authority of the card holder.
WorldPay continues to invest in research into fraud on the Internet and continue to introduce new and
innovative security measures in order to provide safest environment for the retailer and for the shopper.
Communication inbetween WorldPay system and shopper's bank
The WorldPay processing center is also securely communicated with many processing banks worldwide,
who handle the credit card authorisations and process the real time transactions.
Data storage in WorldPay system
Data storage on WP systems, and the communication between WP and the
worldwide banking networks, is regularly audited by the banking authorities to
ensure a secure transaction environment. WP also ensure that we stay up-to-date
with the latest versions of any third-party code we use, and continually review
our own proprietary code.
Verified
by VISA and MasterCard SecureCode
WorldPay system has self anti-fraud system and WorldPay's fraud controls include abnormal use tracking and AVS checks.
WorldPay also always monitor possible fraudulent transactions and advises retailer on suspect orders,
shipments and card verification issues where detected. In addition to standard checks that are made
on each online transaction such as the card number is whether valid, WorldPay anti fraud
software checks that the card is not recorded as stolen or lost and as well as whether
there are sufficient funds in the credit card account.
Recently WorldPay integrated its sytem with Verified by Visa and MasterCard SecureCode,
which allows WorldPay to verify a cardholder's identity at the time of online purchase.
|
|