freeek
Expert Member
I'm sure most of you won't know this however every time I experience it at a store nobody cares when you approach them. I work at a software development company that is involved with EFT and the banking world so I know that all these bank terminals and software companies places should be following PCI DSS guidelines.
I have experienced that when ever I use my credit card / cheque account most POS devices print all you sensitive data in the clear. What this means is that the employee working at various stores can copy this information and use it to purchase various things online or even via the phone.
Next time you go to a Steers or any store use your credit card, you will see that the merchant copy that they ask you to sign has your
1. PAN (in clear - no masking)
2. Expiry Date
3. You name as it is stored on the card.
Most online stores will require your cvv (which is the three digits at the back), which is easily memorizable by the employee swiping your card. There are even a lot of authorizers that will authorize a transaction with out a valid cvv.
I have experienced this all over Canal Walk and even at places such as Makro. The terminals (credit card machines) that the banks issue to the company are to blame their software should be updated to mask the pans and not print the expiry date. They do this for your copy which is good in case you throw it away.
A friend even went to speak to the people at Nedbank at the Canal Walk branch who turned out to be completely clueless about anything.
Maybe RPM or some other well connected person can look in to this for us to help us from getting conned in the future.
I have experienced that when ever I use my credit card / cheque account most POS devices print all you sensitive data in the clear. What this means is that the employee working at various stores can copy this information and use it to purchase various things online or even via the phone.
Next time you go to a Steers or any store use your credit card, you will see that the merchant copy that they ask you to sign has your
1. PAN (in clear - no masking)
2. Expiry Date
3. You name as it is stored on the card.
Most online stores will require your cvv (which is the three digits at the back), which is easily memorizable by the employee swiping your card. There are even a lot of authorizers that will authorize a transaction with out a valid cvv.
I have experienced this all over Canal Walk and even at places such as Makro. The terminals (credit card machines) that the banks issue to the company are to blame their software should be updated to mask the pans and not print the expiry date. They do this for your copy which is good in case you throw it away.
A friend even went to speak to the people at Nedbank at the Canal Walk branch who turned out to be completely clueless about anything.
Maybe RPM or some other well connected person can look in to this for us to help us from getting conned in the future.