attestation
PCI DSS evidence across 1,373 vendors
PCI DSS evidence that a buyer can verify is a registry listing or an attestation of compliance. CertReports mirrors the Visa Global Registry of Service Providers, counting only rows validated as PCI DSS with a validation date, and records the assessor and the date the validation runs through.
- Verified rows
- 1,361
- Vendor-stated
- 12
- Expired
- 158
- Last verified
- 17 Sep 2026
Aria Systems
Finance and accounting
Basis Theory
Payments
billtrust
Finance and accounting
Bluefin Payment Systems
Payments
BlueSnap
Payments
BOTTOMLINE TECHNOLOGIES DE
Payments
CDS Global
Business services
CSG Media
Payments
Epoch EU
epoch.com
Evervault
Security
Swervepay
Finance and accounting
FIS FL
Finance and accounting
Simplificare
Payments
Form Assembly
Form builders and surveys
Foxy.io
E-commerce
GoDaddy Payments
godaddy.com
Guidewire Software
Insurance
HIghRadius
Finance and accounting
Interactions
AI assistants
IXOPAY
Payments
Lightspeed POS USA
E-commerce
Maxio LCC
maxio.com
Safety Technology
moneycollect.com
NCR Government
Payments
Registry traps
Most Visa registry rows are Third Party Agent or ISO registrations, not PCI DSS validations. Those are excluded. The Mastercard SDP compliant service provider list is the second registry-grade source.
Level 1 service providers
Registries list Level 1 service providers with a QSA-signed ROC or AOC. Smaller merchants and service providers self-assess and do not appear.
