in reply to Paranoid about web application security


Hope this helps.

Update: All the above advice assumes you're using a 3rd party processor, so you only have to deal with authentication, not actual credit card/payment data.
  • Comment on Re: Paranoid about web application security