PeepSafe Applications
-
Do you use a Customer Relationship Management tool to store cardholder data?
-
Do you have an ERP system or other application that stores or processes payments?
-
Do you have any in-house applications including green screen applications that store or transmit cardholder data?
-
With PeepSafe, you no longer need to make these applications compliant! With minimal changes to existing business processes, you can seamlessly take and process payments using PeepSafe Application Solutions.
Our case study depicts a typical scenario within a corporation. You have a user with a CRM client, entering a credit card data that connects directly to the payment gateway and an authorization is returned. That authorization and everything else that has been typed goes into the CRM system, and then at settlement,, there is a batch set of transactions which are sent to the gateway for release of funds. In this scenario, every single part of the system brings you into scope. The credit card is entered into the CRM system, so the whole CRM system is in scope. And much like the e-mail and fax scenario, this usually means that every sub-network within your environment is also in scope.
The PeepSafe solution for application integration has the end user performing exactly the same actions, except the credit card entry, which is performed within the PeepSafe environment. Peepsafe can move data seamlessly between the two environments, so there is no duplication of data entry. The gateway returns the credit card authorization to PeepSafe. PeepSafe returns the authorization to your CRM system, but instead of returning the credit card number, it tokenizes it and returns only the token. At settlement, in batch mode, the CRM system sends all of the transactions with tokens instead of PANs back to PeepSafe. PeepSafe de-tokenizes them and sends them back to the payment gateway. Funds are released and confirmations are returned to your CRM system. At this point, PeepSafe has completely removed the credit card number from ever touching any part of your internal network. In terms of your business processes, the interactions and user training, there really is no change to your internal systems or input methods.
PeepSafe Secure Tokenization
- Utilizes any tokens, either provided by ExoIS or any other third party
- Sits between the customer and the payment processor so that payment card data never enters corporate systems
- Integrates with any corporate applications including green screen applications
- Converts existing payment card data stored in major databases and convert them into numeric and alphanumeric based tokens
- Converts payment card data being processed in real-time into numeric and alphanumeric based tokens for storage and future processing
- Integrates with any payment gateway so that cardholder data is never displayed on the screen
- Integrates with voice solutions so that the agent never hears OR sees the payment data

