attestation
PCI DSS evidence across 1,361 vendors
PCI DSS evidence that a buyer can verify is a registry listing or an attestation of compliance. CertReports mirrors the Visa Global Registry of Service Providers, counting only rows validated as PCI DSS with a validation date, and records the assessor and the date the validation runs through.
- Verified rows
- 1,361
- Vendor-stated
- 12
- Expired
- 158
- Last verified
- 17 Sep 2026
Zeus
Payments
Cloud Software
Cloud and hosting
Zoho
Business services
HiTRUST
Security
memphis
memphis.mx
FLOW
flow.cl
experian
Finance and accounting
Five9
Customer support
Payload
payload.co
KEV
schoolcashonline.com
Uphold
topperpay.com
Ionix
zeleri.com
Zuora
Finance and accounting
ALLSECURE
Payments
Click
Payments
clip
Payments
Block
Payments
coop
coop.py
Cybersource
Payments
Toast
E-commerce
Worldline
worldline.com
benefit
Benefits and insurance
CardConnect
Payments
Flexential
Cloud and hosting
Registry traps
Most Visa registry rows are Third Party Agent or ISO registrations, not PCI DSS validations. Those are excluded. The Mastercard SDP compliant service provider list is the second registry-grade source.
Level 1 service providers
Registries list Level 1 service providers with a QSA-signed ROC or AOC. Smaller merchants and service providers self-assess and do not appear.
