What is PCI?
The Payment Card Industry Data Security Standard (PCI DSS) is a security standard for organizations that handle credit and debit card information. The standard was created to increase controls around payment data to reduce fraud.
If you want to sell online and accept payments from Visa, Mastercard, American Express, or Discover, your software and hosting needs to be PCI compliant.
Is Shopify PCI compliant?
Yes, Shopify is certified Level 1 PCI DSS compliant. This compliance extends by default to all stores powered by Shopify.
We are very serious about securely hosting your store and have invested significant time and money to certify our solution is PCI compliant. From annual on-site assessments validating compliance to continuous risk management, we work hard to keep our shopping cart and ecommerce hosting secure.
For information about Shopify's PCI Compliance reports, see Viewing Shopify’s compliance reports.
How do I make my store PCI compliant?
All Shopify stores using our platform are automatically PCI compliant by default. When you choose Shopify to power your store, you can rest easy knowing that we invested significant time and money to obtain our Level 1 PCI certification and that our certification covers your store, its shopping cart and web hosting.
To learn more about the role of data security in customer trust, or to learn more about how to maintain compliance take a look at our PCI compliance checklist on the Shopify blog.