attestation
PCI DSS evidence across 1,373 vendors
PCI DSS evidence that a buyer can verify is a registry listing or an attestation of compliance. CertReports mirrors the Visa Global Registry of Service Providers, counting only rows validated as PCI DSS with a validation date, and records the assessor and the date the validation runs through.
- Verified rows
- 1,361
- Vendor-stated
- 12
- Expired
- 158
- Last verified
- 17 Sep 2026
Cobro Digital
Payments
CodePay
codepay.us
Cofiroute USA
Logistics and supply chain
Coinflow Labs
Payments
commercepay
Payments
CommerceV3
E-commerce
COMOTA
comota.co.jp
CompassPay
Education
Compass Plus GB Online
Payments
Comprise Technologies
comprisetechnologies.com
Concentrix Solutions
Business services
Concerto Software Systems Pvt
concertosoft.com
Concord Servicing
Finance and accounting
Conduent Business Services
Business services
conekta
Payments
Conferma
Payments
Connfido
connfido.com
ConsumerDirect
consumerdirect.com
Coral Commerce
Payments
cordisnetwork
cordisnetwork.com
CoreCard Software
Banking and lending
CORE Cashless
Payments
CoreCommerce
Payments
Corvus Pay d.o.o
Payments
Registry traps
Most Visa registry rows are Third Party Agent or ISO registrations, not PCI DSS validations. Those are excluded. The Mastercard SDP compliant service provider list is the second registry-grade source.
Level 1 service providers
Registries list Level 1 service providers with a QSA-signed ROC or AOC. Smaller merchants and service providers self-assess and do not appear.
