Frequently asked questions

Frequently asked questions

Is my business affected by PCI DSS?

PCI DSS (Payment Card Industry Data Security Standard) affects all merchants/businesses that accept credit card payments and store credit card data.

Is my system PCI-compliant?

In order to meet the PCI standard, a compliant software version is needed. Please refer to our Compatibility List for the current list of compliant versions.

If you are handling and storing credit card data, older software versions can be updated to meet the standard.

The scope of the upgrade you may need depends on the version of the software you have now. Our Support and Sales departments will be happy to assist you.

Please also pay attention to network security and make sure that there are no unprotected/unencrypted safe-copies or training systems in your network.

Can I perform changes in the configuration myself?

You are kindly requested to perform such changes only when instructed by Support. We will assist you in finding out if any changes in setup or configuration are required.

What software version am I running?

The version number is usually displayed on-screen when you start or run the software. If you are having trouble finding your version number, please ask Support for assistance.

What will an update cost?

If you have an active support contract, updates are free of charge.

In many cases, depending on the product, an update can be performed remotely by the responsible Support department.

In case the version you are currently running is very old, it may be necessary to perform the update onsite, which will be chargeable. Depending on the scope of the upgrade, other charges, e.g. for new hardware, may apply.

What can I do to be PCI-compliant?

In order to meet the security requirements you should not store/enter any credit card data and update your system to a software version that is PCI-compliant.

Chain businesses: Who should I contact with regards to software updates?

Please contact your central IT management to coordinate updates.

Could you issue an official certificate of compliance?

There is no issuing of individual certificates. All software providers whose products are certified are listed on the official VISA website (List of certified software providers) along with the relevant software versions. Companies that do not appear on the list are not officially certified and do not meet the strict requirements for PCI. The list is updated regularly by VISA.

Which product stores what card data, and how?

The answer depends on the software version. Our Support team can give you detailed information on the status of the version you are running. Furthermore, individual and business-specific fields may have been added to your database/user interface upon your request, and these may be filled manually.

Is my business compliant, if I do not store any credit card data?

If you do not enter or store any credit card data anywhere in your system or network, you are PCI-compliant. In this case, no software upgrades or setup changes are required.

We have acquired our credit card terminal via MICROS-Fidelio – is it PCI-compliant?

MICROS-Fidelio does not sell credit card terminals. Please contact your transaction service provider (e.g. Concardis or Elavon) for further information.

We are using a credit card terminal, but there is no Interface to our Front Office system. Are we PCI-compliant?

You are compliant as long as there is no manual input of credit card data in the Front Office system. Please also refer to the official PCI-DSS Documentation for further details.