attestation
PCI DSS evidence across 158 vendors
PCI DSS evidence that a buyer can verify is a registry listing or an attestation of compliance. CertReports mirrors the Visa Global Registry of Service Providers, counting only rows validated as PCI DSS with a validation date, and records the assessor and the date the validation runs through.
- Verified rows
- 1,361
- Vendor-stated
- 12
- Expired
- 158
- Last verified
- 17 Sep 2026
Iron Mountain
Cloud storage
Broadridge Financial Solutions
Finance and accounting
Equifax
Analytics
PaySimple
Payments
Viasat
Networking
Collinson
Travel and hospitality
Netcracker Technology
netcracker.com
Rackspace US
Cloud and hosting
Nexus
nuek.com
y
y.uno
DIGITAL PAYMENTS
Payments
Sure
Insurance
Affirm
Payments
eway
Payments
AVANGATE
Payments
CA Technologies
IT management
Clearent
Payments
Getz
No-code and automation
Mad Mobile
madmobile.com
rhodium
rhodium.ooo
LAS ARDENAS
acapuedo.com
Aiful
Banking and lending
allinfinance
allinfinance.com
ALTPAYNET
Payments
Registry traps
Most Visa registry rows are Third Party Agent or ISO registrations, not PCI DSS validations. Those are excluded. The Mastercard SDP compliant service provider list is the second registry-grade source.
Level 1 service providers
Registries list Level 1 service providers with a QSA-signed ROC or AOC. Smaller merchants and service providers self-assess and do not appear.
