attestation
PCI DSS evidence across 12 vendors
PCI DSS evidence that a buyer can verify is a registry listing or an attestation of compliance. CertReports mirrors the Visa Global Registry of Service Providers, counting only rows validated as PCI DSS with a validation date, and records the assessor and the date the validation runs through.
- Verified rows
- 1,361
- Vendor-stated
- 12
- Expired
- 158
- Last verified
- 17 Sep 2026
Vanta
Compliance and GRC
Vanta—the proven leader in automated compliance helping startups…
CrowdStrike
Security
Datadog
DevOps and observability
Snowflake
Data platforms
Cyera
Security
GitLab
DevOps and observability
A complete DevOps platform delivered as a single application.
OpenAI
AI infrastructure
Wiz
Security
Okta
Identity and access
Zoom
Video conferencing
Vercel
Cloud and hosting
clickup
Project management
Registry traps
Most Visa registry rows are Third Party Agent or ISO registrations, not PCI DSS validations. Those are excluded. The Mastercard SDP compliant service provider list is the second registry-grade source.
Level 1 service providers
Registries list Level 1 service providers with a QSA-signed ROC or AOC. Smaller merchants and service providers self-assess and do not appear.
