attestation
PCI DSS evidence across 1,361 vendors
PCI DSS evidence that a buyer can verify is a registry listing or an attestation of compliance. CertReports mirrors the Visa Global Registry of Service Providers, counting only rows validated as PCI DSS with a validation date, and records the assessor and the date the validation runs through.
- Verified rows
- 1,361
- Vendor-stated
- 12
- Expired
- 158
- Last verified
- 17 Sep 2026
Cliq
Payments
ControlScan
Security
Digital Financial
digitalfg.com
doku
Payments
E-net
enetcom.co.jp
f i
f-i.de
Fractal
Payments
Givelify
Nonprofit and fundraising
global blue
Payments
Cayan
Payments
GLORY
glory.co.jp
HELCIM
helcim.com
hey
hey.inc
IPAY
hipay.com
HRS
hrs.com
HungerRush
hungerrush.com
Kibo
E-commerce
Kount
Security
ITX
kzitx.com
MOCA
Real estate and property
Opay
opayweb.com
PayTrace
paytrace.com
PEX
pexintl.com
SVM
plugpay.net
Registry traps
Most Visa registry rows are Third Party Agent or ISO registrations, not PCI DSS validations. Those are excluded. The Mastercard SDP compliant service provider list is the second registry-grade source.
Level 1 service providers
Registries list Level 1 service providers with a QSA-signed ROC or AOC. Smaller merchants and service providers self-assess and do not appear.
