Current-generation payment protection • PCI DSS v4.0.1

Payment security & compliance

PCI DSS v4.0.1 protected checkout.

Your full card details never touch our servers.

Card and wallet details are securely collected and processed through payment technology supplied by Stripe or PayPal. Our website receives the transaction result�not your complete card number or card security code.

PCI DSS v4.0.1 3D Secure 2 Strong Customer Authentication PSD2 controls Provider-hosted payment fields

The most important security fact

Your complete card number cannot be taken from our database because we do not receive or store it.

Sensitive payment information is entered into payment components supplied by the selected provider and sent directly to that provider for processing. Laptop-lcd-screen.co.uk receives confirmation of the payment, not the complete payment credentials.

Defence in depth

Multiple layers of modern payment protection

Our payment flow combines current PCI security requirements with trusted payment providers, encrypted transmission and cardholder authentication technology.

PCI DSS v4.0.1

The current PCI Data Security Standard is the foundation for protecting payment account data.

Encrypted payment flow

Payment information is securely transmitted to the payment provider rather than being stored on our website.

3D Secure 2

Supported payments may use modern cardholder authentication to help meet Strong Customer Authentication requirements.

Regular review

Payment handling statements and integrations should be reviewed whenever the checkout configuration changes.

Current standard

Built around the latest active PCI DSS version

PCI DSS v4.0.1

PCI DSS v4.0.1 is the current version of the Payment Card Industry Data Security Standard. It sets technical and operational requirements intended to protect payment account data. Our payment flow is structured to keep full card details within the selected payment provider's systems.

Current active standard v4.0.1

Trusted payment partners

Payments handled by established providers

The provider used depends on the payment method selected during checkout.

Stripe

Card and wallet payment technology

Stripe payment components securely collect sensitive payment details and send them to Stripe for processing. Stripe states that it is certified as a PCI Level 1 service provider.

Stripe security information

PayPal

PayPal-hosted payment experience

PayPal securely processes payment information within its payment environment. PayPal states that its payment solutions are PCI compliant and supports security controls including authentication where required.

PayPal payment information

Security controls

The latest payment-security essentials

PCI DSS v4.0.1 3D Secure 2 Strong Customer Authentication PSD2-related controls Provider-hosted fields Encrypted transmission No full card data stored No CVV stored

Clear data boundary

What reaches us-and what does not

This separation is the core of the payment security message.

Handled by the payment provider

Sensitive payment credentials

  • ? Full credit or debit card number
  • ? Card security code
  • ? Payment authentication information
  • ? Provider fraud and authorisation checks

Not stored by this website

Cardholder secrets stay outside our systems

  • x No database of complete card numbers
  • x No stored CVV or CVC security codes
  • x No access to your complete payment credentials
  • x No re-use of full card details by our staff