attestation
PCI DSS evidence across 1,361 vendors
PCI DSS evidence that a buyer can verify is a registry listing or an attestation of compliance. CertReports mirrors the Visa Global Registry of Service Providers, counting only rows validated as PCI DSS with a validation date, and records the assessor and the date the validation runs through.
- Verified rows
- 1,361
- Vendor-stated
- 12
- Expired
- 158
- Last verified
- 17 Sep 2026
Signifyd
E-commerce
Simpligov
Government and public sector
EML Payments USA
storefinancial.com
TouchNet Information Systems
touchnet.com
Tyler Federal
Government and public sector
Uber Technologies
ubereats.com
Ubiquity Global Services
ubiquity.com
Vindicia
Payments
wyndhamhotels
wyndhamhotels.com
Yardi Canada
yardi.com
Zebra Technologies
IoT and devices
network
network.global
One
oneincsystems.com
IPS
ipsgroupinc.com
Finance
Finance and accounting
Phoenix
new-age-data.com
PayPal
Payments
PayPal
Payments
Live
livegroup.com.au
Shopify
E-commerce
PAY
pay.co.jp
pay
pay.gov
checkout
Payments
SecureCo
secureco.com
Registry traps
Most Visa registry rows are Third Party Agent or ISO registrations, not PCI DSS validations. Those are excluded. The Mastercard SDP compliant service provider list is the second registry-grade source.
Level 1 service providers
Registries list Level 1 service providers with a QSA-signed ROC or AOC. Smaller merchants and service providers self-assess and do not appear.
