@henryk @Edent ah, memories of proving your entire hardware and software stack and human processing was secure before banks would let you process card payments.. PCI DSS audit, where I found a major flaw in the banks (Barclays) own processes and had to call them out on it for sending unencrypted data to an unauthenticated network endpoint. Pretty sure that's changed a bit over the decades since then.
Simon Hewison
@zymurgic@mastodon.online