Security
Website Security Certificate
Singletrack Bikes works on a Cybertill system which has a Comodo security certificate. Comodo also issue website security certificates to organisations such as NASA, Microsoft, and Sony to name just a few. On the page asking for your card details you will see the Comodo logo on the bottom right corner which you can click to see the certificate issued to Cybertill. At Singletrack Bikes we use a payment gateway called Sage Pay (Formerly known as Protx) to process the transaction.
Transaction security
All transaction information passed between Singletrack Bikes and Sage Pay’s systems is encrypted using 128-bit SSL certificates. No cardholder information is ever passed unencrypted and any messages sent to our servers from Sage Pay are signed using MD5 hashing to prevent tampering. You can be completely assured that nothing you enter onto our payment pages can be examined, used or modified by any third parties attempting to gain access to sensitive information.
Encryption and Data Storage
Once your card details enter the systems of Sage Pay, all data is secured using the same internationally recognised 256-bit encryption standards used by, among others, the US Government. The encryption keys are held on state-of-the-art, tamper proof systems in the same family as those used to secure VeriSign's Global Root certificate, making them all but impossible to extract. The data held by Sage Pay is extremely secure and they are regularly audited by the banks and banking authorities to ensure it remains so.
System security
Sage Pay’s systems are scanned quarterly by Trustwave which are an independent Qualified Security Assessor (QSA) and an Approved Scanning Vendor (ASV) for the payment card brands.
Sage pay is also audited annually under the Payment Card Industry Data Security Standards (PCI DSS) and is a fully approved Level 1 payment services provider, which is the highest level of compliance. They are also active members of the PCI Security Standards Council (SSC) that defines card industry global regulation.
View PCI DSS certificate of Sage Pay
Personal Details
With regards to your non payment related details this information is held on our state of the art secure servers. We will not pass any of these details onto any third party, and we will only use your information to process your orders and keep you informed with a newsletter if you opt in to receive them.
|