attestation
PCI DSS evidence across 1,361 vendors
PCI DSS evidence that a buyer can verify is a registry listing or an attestation of compliance. CertReports mirrors the Visa Global Registry of Service Providers, counting only rows validated as PCI DSS with a validation date, and records the assessor and the date the validation runs through.
- Verified rows
- 1,361
- Vendor-stated
- 12
- Expired
- 158
- Last verified
- 17 Sep 2026
Nymbus
nymbus.com
OAKLAND COUNTY
oakgov.com
Oceanpayment
oceanpayment.com
Token Azerbaijan
odero.az
Token Payments Services
odero.ro
Oen
oen.tw
OIS BIZCRAFT
oisbizcraft.com
eVance
olb.com
Omega Financial
omegafi.com
Omise
omise.co
OMNISPAY PAYMENT SERVICES
omnispay.com
Omniware Technologies Private
omniware.in
Omno JSC
omno.com
Onafriq
onafriq.com
Onbe
onbe.com
Onefin Vietnam Joint Stock
onefin.vn
onepay
onepay.vn
Overcross
onerway.com
Online Payment Platform
onlinepaymentplatform.com
nuOnosys
onosys.com
O Pay Electronic Payment
opay.tw
OPENPAY COLOMBIA
openpay.co
OPENPAY PERU
openpay.pe
Opentech.com
opentech.com
Registry traps
Most Visa registry rows are Third Party Agent or ISO registrations, not PCI DSS validations. Those are excluded. The Mastercard SDP compliant service provider list is the second registry-grade source.
Level 1 service providers
Registries list Level 1 service providers with a QSA-signed ROC or AOC. Smaller merchants and service providers self-assess and do not appear.
