Security

Is Mallow PCI-compliant?

The Payment Card Industry Data Security Standard (PCI DSS) is a comprehensive set of security requirements designed to ensure that all companies that process, store, or transmit credit card information maintain a secure environment. This protects both your business and your customers from data breaches and fraud.

Our Commitment to Security

Mallow is deeply integrated with Sola, a secure payment processing partner. Through this partnership, Mallow provides a PCI-compliant environment for your transactions by utilizing industry-leading security controls, including advanced encryption, secure firewalls, and rigorous regular testing.

Merchant Responsibilities

While Mallow provides the secure infrastructure, PCI compliance is a shared responsibility. To maintain a secure ecosystem:

  • Initial Agreement: All merchants agree to uphold PCI-compliant business practices during the initial onboarding and underwriting process. This is formalized through the completion of a PCI Compliance form that you must fill out after onboarding with Mallow.

  • Annual Re-attestation: To remain compliant, every merchant must re-attest to their adherence to these security standards once per year.

  • Notifications: You don’t need to track this date manually; you will be notified via email when it is time to complete your annual re-attestation.

Was this helpful?