|
| Buy from us with total confidence ! |
 |
|
 |
What is HSBC's Secure ePayments?
It's a series of products developed by HSBC that allow us to accept credit cards. This is a secure online service. What this means is your encrypted order information, is sent to HSBC merchant services for authorisation then returned to us, also via an encrypted process. Some online payment systems require you to leave the suppliers site and go to a third party to enter your details and obtain authorisation. The system we have with HSBC is a seamless fully integrated solution which in most cases does not require you to leave our website as all the processing is handled via a secure link from our own secure private server to the HSBC bank servers. For added security your encrypted card details are not retained on our server, Our site also incorporates the latest 3D Secure'Verified by Visa' and 'Mastercard Securecard' protocols for even greater security and confidence. If the bank that issued your card is a member of the 3D Secure scheme a pop-up window may appear either asking you to register your card or if you have already registered asking you for a password to enable them to identify you.
These are the steps that will you go through when you buy something from our website and pay using a credit card:
1. You access our website, place an order for goods by adding them into your shopping basket and proceed to the checkout.
2. You then provide your card details which are encrypted and sent to HSBC's Secure ePayments gateway for authorisation, they are then security checked and verified with your card issuer. If you have previously registered with your card issuer to participate in the 'Mastercard SecureCode' or 'Verified by Visa' system a secure 'PopUp' window will open asking you to enter your password. If you have not already registered your card, you may be requested to enrol. Either way you are then able to continue with your transaction.
3. You will be advised via our website if your card has been authorised or declined or if you need to contact us or your bank direct.
4. Once your payment is completed, your order will be authorised and despatched to you via your selected method.
In addition our website is also PCI DSS compliant.
The PCI DSS, a set of comprehensive requirements for enhancing payment account data security, was developed by the founding payment brands of the PCI Security Standards Council, including American Express, Discover Financial Services, JCB International, MasterCard Worldwide and Visa Inc. Inc. International, to help facilitate the broad adoption of consistent data security measures on a global basis.
The PCI DSS is a multifaceted security standard that includes requirements for security management, policies, procedures, network architecture, software design and other critical protective measures. This comprehensive standard is intended to help organizations proactively protect customer account data.
The core of the PCI DSS is a group of principles and accompanying requirements, around which the specific elements of the DSS are organized:
Build and Maintain a Secure Network
Requirement 1: Install and maintain a firewall configuration to protect cardholder data
Requirement 2: Do not use vendor-supplied defaults for system passwords and other security parameters
Protect Cardholder Data
Requirement 3: Protect stored cardholder data
Requirement 4: Encrypt transmission of cardholder data across open, public networks
Maintain a Vulnerability Management Program
Requirement 5: Use and regularly update anti-virus software
Requirement 6: Develop and maintain secure systems and applications
Implement Strong Access Control Measures
Requirement 7: Restrict access to cardholder data by business need-to-know
Requirement 8: Assign a unique ID to each person with computer access
Requirement 9: Restrict physical access to cardholder data
Regularly Monitor and Test Networks
Requirement 10: Track and monitor all access to network resources and cardholder data
Requirement 11: Regularly test security systems and processes
Maintain an Information Security Policy
Requirement 12: Maintain a policy that addresses information security.
You can check out our website for complience by clicking on the Card Safe or Security Metrics logos on the home page.
How does this benefit you, the customer?
When you are on a website and it comes time to provide your details and credit card information, you know that we have employed the very best technology available from some of the most respected companies in the world, Equifax/GeoTrust/HSBC, Global Payments, Security Metrics and MasterCard/Visa secure 3D, to ensure you are fully protected. This is the same technology used by some of the biggest names in on-line retailing such as Tesco, British Airways, John Lewis, Comet, Currys and PC World etc.
IMPORTANT INFORMATION
Since 2007 some banks have made it a condition of all online credit/debit card transactions that your card is processed through the 3D protocols and are PCI compliant, other banks and card issuers have yet to implement the scheme. Please be aware that using websites that have not implemented 3D Secure or are not PCI DSS compliant could make you more vunerable to credit card fraud. If a company thinks so little of their customers vunerability to fraud that they don't bother to implement 3D secure protocols or submit to testing by the Payment Card Industry Data Standards Council, do they really deserve your business?
If you have any difficulty complying with this latest security protocol please do not hesitate to contact us to arrange another method of payment.
|
|
 |
|
|
|