Is wordpress.com and its eCommerce offerings PCI compliant?
-
Hello, I’m considering wordpress.com for wordpress hosting for an eCommerce. However I need PCI compliance. Is wordpress.com PCI compliant? Thanks.
The blog I need help with is: (visible only to logged in users)
-
-
Thanks for the reply. I’m glad there are so many options for eCommerce on wordpress, but that page talks nothing about if wordpress.com’s hosting is PCI compliant or not. Is that information available somewhere?
-
I’m sorry I am unable to answer this so I tagged this thread for a Staff response. Please subscribe to it so you are notified when they respond. To subscribe look in the sidebar of this thread, find the subscribe to topics link and click it.
-
but that page talks nothing about if wordpress.com’s hosting is PCI compliant or not. Is that information available somewhere?
For that reason I said
PCI search on Support Page:
https://en.support.wordpress.com/?s=PCIAnd on the forums, I found this:
https://en.forums.wordpress.com/topic/security-codes-for-bank-cards?replies=5#post-651450This thread is tagged for Staff assistance (by timethief)
-
I won’t remove tagging for Staff as I think the support docs need an update to clarify this.
Yep. I agree.
Have a great Sunday, TT. :) -
I hope you have a grand day too, Galois. The sun is shining and I’ll be moving transplants onto my deck. :)
-
-
-
Thanks everyone for your time. I’m glad wordpress.com is PCI compliant, and just have two more questions:
– If I write a wordpress theme that uses a PCI-compliant plugin and hosting (like Ecwid and wordpress.com), is there anything extra I need to do to ensure this site remains PCI compliant?
– Is there any way you could update the official documentation with more info about your PCI compliance (the fact that you are, and preferably the level of compliance you support (hopefully level 1, right?). This way I can point my employer to it when they say “Is my business safe on this new platform?”
-
It sounds like there is some confusion here. The e-commerce options provided by WordPress.com to be used on sites hosted here are PCI compliant. If you want to write your own themes and host your own site built on the WordPress open source platform that’s a different process. Here’s more about the difference between the two types of WordPress sites.
WordPress.com and WordPress.org
I recommend you take your question to the WordPress.org forum as you may find others who have done what you are trying to do already
-
Hmm, I probably don’t know enough about wordpress.com. The plan is to write a custom checkout page and a custom theme (maybe those go hand in hand). Is that possible with wordpress.com?
My second question still stands: Is wordpress.com PCI Level 1 compliant? Could you update the documentation to reflect it so it’s a bit more official than a forum post?
Thanks again for your time.
-
Hmm, I probably don’t know enough about wordpress.com. The plan is to write a custom checkout page and a custom theme (maybe those go hand in hand). Is that possible with wordpress.com?
It’s not. To create a custom theme, you’ll need a self hosted WordPress site.
Is wordpress.com PCI Level 1 compliant? Could you update the documentation to reflect it so it’s a bit more official than a forum post?
I’ve passed this request on to our team that handles our e-commerce setup. They will review the current documentation and make changes as necessary. I can’t provide a timeline on when this change will be implemented, but your request has been submitted.
-
We’ve updated the support doc with PCI compliance info.
Thanks for the heads up!
- The topic ‘Is wordpress.com and its eCommerce offerings PCI compliant?’ is closed to new replies.