It's prohibited to collect CVV to process offline credit card donations in batches. PCI DSS prohibits CVV data from being written, retained or handled in any format including paper. All our credit card donations coming from mailed appeals are not allowed to collect CVV on paper.
Database view never collected CVV. Can unified view do the same please?
Thank you Anthony for looking into this issue.
Unfortunately, we will never be able to obtain CVV on paper donation forms, because it's prohibited by PCI. Thus, we won't be able to process credit cards in webview batches if CVV is still required in webview batching.
@steven As far as I know that is still requiring the CVV. The change we just implemented only rolled back functionality for the "back office" UI workflows. I would have to confirm with the payments folks if they are planning to make any changes specifically for the API.
Anthony, will the later implementation of the new Blackbaud Checkout system for back-office functionality also apply to the use of Blackbaud Checkout outside of RE NXT? Like, for using Blackbaud Checkout via the Payments API in back office mode? Thanks.
Thank you for your patience, I did confirm with our development team that the requirement of CSC and postal code is expected for forms and back office systems utilizing the new Blackbaud Checkout system. Our development team has received feedback from customers like you around the change to this functionality and how the CSC code is not always something your team has on hand for your back office processing. They have determined to revert the back-office functionality to use the older checkout system for card processing, and plan to re-introduce the new Blackbaud Checkout system at a later date after giving organizations more time to prepare and adjust their back-office procedures.
At least allow us to disable CVV, either in RE NXT or the Merchant Services account configuration.