attestation
PCI DSS evidence across 1,373 vendors
PCI DSS evidence that a buyer can verify is a registry listing or an attestation of compliance. CertReports mirrors the Visa Global Registry of Service Providers, counting only rows validated as PCI DSS with a validation date, and records the assessor and the date the validation runs through.
- Verified rows
- 1,361
- Vendor-stated
- 12
- Expired
- 158
- Last verified
- 17 Sep 2026
wuzi
wuzi.mx
Plug and Pay Technology
www,plugnpay.com
Xendit Payments Services
Payments
Provides payment infrastructure for Southeast Asia
Xformative Payment Systems
xformative.com
XGD Europe
xgd.com
XiFin
Healthcare
Xpress Solutions
xpressbillpay.com
Xsolla USA
xsolla.com
Yabandpay
yabandpay.com
AOL Membership Services
yahoinc.com
Yamaguchi Data Processing Services
yamajyo.co.jp
YEAHPAY SINGAPORE
yeahpay.net
YeePay
yeepay.com
yellowpepper
yellowpepper.com
yemeksepeti
yemeksepeti.com
Drakaris
yigim.az
Yoursafe
yoursafe.com
ysepay
ysepay.com
ZAAK EPAYMENT SERVICES PVT
zaakpay.com
Zamupay
zamupay.com
Zenith Payments
zenithpayments.com.au
PAGOS ONLINE
zenrise.io
zift
zift.io
zigu
zigu.mx
Registry traps
Most Visa registry rows are Third Party Agent or ISO registrations, not PCI DSS validations. Those are excluded. The Mastercard SDP compliant service provider list is the second registry-grade source.
Level 1 service providers
Registries list Level 1 service providers with a QSA-signed ROC or AOC. Smaller merchants and service providers self-assess and do not appear.
