Skip to main content
Affirm logo

Affirm

PCI DSS evidence

affirm.comPaymentsLast verified 17 Sep 2026
PCI DSS mark, CertReports state Expired as of 17 Sep 2026Expired

Affirm and PCI DSS

Affirm previously appeared with PCI DSS evidence, but the expiry date of 31 Aug 2026 has passed and CertReports found no renewal as of 17 Sep 2026.

Evidence

ExpiredListed on the Visa Global Registry as PCI DSS validated through 2026-08-31 (validation date passed)
as of 17 Sep 2026 · confidence 100%
Kind
attestation
Issued or listed
23 Sep 2021
Expires or valid through
31 Aug 2026
Scope
THIRD PARTY SERVICER
SourceCapturedQuoteLinks
Visa Global Registry of Service Providers
Official registry · HTTP 200
17 Sep 2026Affirm, Inc.: PCI DSS, assessor Payment Software Company (PSC), valid through 2026-08-31
Live pagesha256 5373e83aef

What is not public

  • The Visa registry lists the assessor and the date the validation runs through, not the services in scope of the attestation of compliance.
What PCI DSS means, and what it does not

Only a registry listing (Visa Global Registry, Mastercard SDP) or an AOC letter is strong evidence. In the Visa registry only rows validated as PCI DSS with a validation date count; Third Party Agent registrations are not PCI evidence.

Read the PCI DSS guide and browse all vendors with evidence

Questions buyers ask

Is Affirm PCI DSS compliant?

CertReports found no registry listing or attestation of compliance for Affirm as of 17 Sep 2026.

How does CertReports verify this?

Every state carries a capture date, a source and a snapshot link. Registry rows come from the official registry data; vendor statements come from the vendor’s own page or trust centre; nothing is inferred. Vendors can dispute any row and corrections ship within two business days.

Alternatives with PCI DSS evidence

Similar vendors (shared product tags or the Payments category) whose PCI DSS row is verified or vendor-stated, ranked by similarity.