ICO penalties for not encrypting sensitive personal data

Roland Perry lists at internetpolicyagency.com
Mon Oct 29 08:50:10 GMT 2012


In article 
<CAKy9zTBi==Au_47eBmTbYa8QNKrLGRoLyZEcfAgnWc7grjABtQ at mail.gmail.com>, 
Gary Mulder <flyingkiwiguy at gmail.com> writes
>I discovered today a website that intentionally makes false claims of 
>using SSL, and Visa 3D Secure or Mastercard SecureCode, but in fact 
>accepts credit cards online in plain text. How do you get the ICO to 
>investigate such blatant misrepresentation and violations

And I saw one the other day that archives your CVV (along with 
everything else) "for use next time", which I understand is
against the Card Companys' T&C.
-- 
Roland Perry



More information about the ukcrypto mailing list