PCI DSS Compliance
Payment Card Industry Data Security Standard
PCI DSS is the security standard for organizations involved in payment-card processing. Mayhem designs its checkout integrations to minimize card-data handling and uses established payment processors for payment authorization and capture.
Our Commitment to Security
We take payment security seriously and maintain controls appropriate to the payment flows we operate. Processor-hosted PayPal and CCBill steps are handled by those providers. Authorize.net card details are transmitted for the current checkout and are not stored in Mayhem order or account records.
What This Means for You
As a seller or shopper on Mayhem Marketplace:
- Use the displayed checkout: Enter payment information only in the Mayhem or processor page opened for your order
- No stored full card details: Mayhem order and account records do not retain your full card number or security code
- Processor controls: PayPal, Authorize.net, and CCBill apply their own payment-security and compliance programs
- Report concerns: Contact us if a checkout page or payment request looks suspicious
Security Practices
Our payment-security practices include:
- Secure network infrastructure with firewalls and encryption
- Protection of stored cardholder data
- Regular security testing and monitoring
- Strict access controls and authentication measures
- Ongoing security training for our team
- Incident response procedures
Third-Party Payment Processing
Automated checkout uses the processor configured for the storefront. Mayhem does not retain full card numbers or security codes in order or account records. Each seller should also follow the requirements of any payment account or manual payment method they configure.
Questions?
If you need current payment-security or compliance documentation, contact [email protected].
Last updated: July 31, 2026