You are here
PCI Compliance & Mashery Distributed Commerce
PCI Compliance
Mashery is the first API management company to be certified as a Level 1 PCI-compliant Service Provider.
TESTIMONIAL
John Bernier, Partner Engagement Manager, Best Buy
FULL PCI COMPLIANCE
Ready to make your compliance team very happy? Tell them that Mashery is the first API management company to be included in the official 'VISA Global Registry of Service Providers' for PCI DSS, and MasterCard PCI Compliance Service Providers lists. PCI is the Payment Card Industry's standard for data security, and companies on the list have passed a rigorous audit. You'll be happy too, because your compliance team won't have to add weeks or months to your API release schedule with their own audit. Just show them that Mashery is on the list, and you're ready to go with fully PCI-compliant API management.
DISTRIBUTED COMMERCE: YOUR "BUY" BUTTON EVERYWHERE

Customers want to transact any place, any time. It's a huge opportunity for merchants, but how do you build transactions into every possible customer touch point securely and easily? And what if you want to accept payments from strategic business partners?
The answer is Mashery Distributed Commerce, a distribution platform for your commerce engine that lets you accept purchases and other financial transactions securely through any app or partner.
Mashery Distributed Commerce beats traditional affiliate programs because partners can take transactions without users leaving their sites and apps. Unlike "scrapers"—companies that kludge together poorly designed mobile apps by scanning your website—Mashery Distributed Commerce promotes transactional apps with native gestures. That means great user experiences, no dependencies on your website, and more revenue.
Distributed Commerce: How it works

Ask app developers what they need to deploy transactions quickly on lots of devices, and you'll quickly hear "give me an API"—application programming interface. Mashery Distributed Commerce opens commerce APIs so developers and affiliates can build your transactions into new apps.
It can work two ways:
1. Take credit card transactions through Mashery's PCI-compliant API proxy
Publish an API for accepting credit card transactions from trusted strategic partners. Choose who has access to your API and how often they can use it, see reports on mobile transactions, and much more.
2. Use OAuth for payment accounts on file
Enable payment authorizations with OAuth 1.0 or 2.0 through Mashery OAuth Accelerator.
API Evolution: Rise of the Commerce API

In the beginning, there were read-only APIs (think store locators). Then came write APIs, like Twitter, that let users post information. With Mashery Distributed Commerce, companies can now expose commerce APIs, enabling developers to build transactions into any app, device, or social network.
