PCI SSF
Account Data

PCI SSF SSS-10.1: Sensitive Authentication Data (Module A)

Sensitive authentication data must not be stored after authorization. If retained temporarily during authorization, it must be protected with strong cryptography and securely deleted immediately after use.

Maintained by Gerard BlokdykControl text last updated

Other controls in Account Data

Query this from an agent

The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.