attestation
PCI DSS evidence across 1,373 vendors
PCI DSS evidence that a buyer can verify is a registry listing or an attestation of compliance. CertReports mirrors the Visa Global Registry of Service Providers, counting only rows validated as PCI DSS with a validation date, and records the assessor and the date the validation runs through.
- Verified rows
- 1,361
- Vendor-stated
- 12
- Expired
- 158
- Last verified
- 17 Sep 2026
Comenity Servicing
Finance and accounting
BridgePay Network Solutions
bridgepaynetwork.com
BridgerPay
Payments
Brightree
Healthcare
British Telecommunications
Networking
Siemens Mobility
Automotive and mobility
C Solution
c-solution.ro
Cale Systems
Logistics and supply chain
CALLPHONE
Communications and CPaaS
Cambey West
cambeywest.com
camelfin
camelfin.com
Camis
camis.com
Computer Age Management Services
camspay.com
Canada Direct Holding
Other software
Canary Technologies
Travel and hospitality
Modernizing the hospitality tech stack.
Cantaloupe
E-commerce
Capstone Logistics
Logistics and supply chain
MONEPEAK FINTECH PRIVATE
Payments
Card Access Services
Payments
UBS Card Center
cardcenter.ch
CardFlight
Payments
CardGate.net
Payments
Cardinal Commerce
Payments
Shanghai CardInfoLink Data Services
Payments
Registry traps
Most Visa registry rows are Third Party Agent or ISO registrations, not PCI DSS validations. Those are excluded. The Mastercard SDP compliant service provider list is the second registry-grade source.
Level 1 service providers
Registries list Level 1 service providers with a QSA-signed ROC or AOC. Smaller merchants and service providers self-assess and do not appear.
