I had a sneaky vendor process an automatic payment renewal on a software package that was used once,and their ratings on BBB is full of it happening so these days once-offs get a single-use card
Had my account at wish.com compromised once in a password spraying attack,so they purchased a few thousand worth of projectors using stored payment info
Not to mention you have the ability to create multiple cards that can be unique per vendor,so if something gets compromised you know the vendor (and I wish everybody encrypted salted and hashed stored payment info at a seperate payment processor)