What is card tokenisation?
What is card tokenisation?
What are the RBI guidelines on tokenisation?
What are the RBI guidelines on tokenisation?
- Payment aggregator, payment gateway or merchants cannot store card numbers on their servers even if they are PCI/DSS compliant
- Card networks and Issuing banks can only store card numbers and offer token provisioning services to other entities in payment industry
- The deadline for compliance of these guidelines is 31st of December 2021
Why do I need Token Vault by Cashfree Payments?
Why do I need Token Vault by Cashfree Payments?
What all card details can I save once with tokenisation in place?
What all card details can I save once with tokenisation in place?
Is there any impact of tokenisation on the card payments where the customer enters complete card number?
Is there any impact of tokenisation on the card payments where the customer enters complete card number?
Can I retrieve the actual card number using the card network token?
Can I retrieve the actual card number using the card network token?
Can I provision card network token without taking consent from customer?
Can I provision card network token without taking consent from customer?
Can I provision card network token without the customer completing 2FA?
Can I provision card network token without the customer completing 2FA?
Does tokenisation affect any other payment mode other than cards? Which all card transactions are affected?
Does tokenisation affect any other payment mode other than cards? Which all card transactions are affected?
If a merchant is PCI/DSS compliant and was saving cards on their own server how can they meet RBI’s compliance requirement?
If a merchant is PCI/DSS compliant and was saving cards on their own server how can they meet RBI’s compliance requirement?
- Merchants who were saving the card number on their own servers, will also have to either integrate with individual card schemes and become a token requestor themselves or integrate with Token Vault where Cashfree Payments will be a token requestor on merchant’s behalf.
- PCI/DSS compliant merchants have to delete the already saved cards with them as RBI does not allow bulk tokenisation of cards.
Does a merchant need to re-provision the already saved cards on another PA/PG if they wish to shift from Cashfree to some other PA/PG?
Does a merchant need to re-provision the already saved cards on another PA/PG if they wish to shift from Cashfree to some other PA/PG?