Sending Full Card Numbers Through the Helcim API
Accounts sending full card numbers via the Helcim API are subject to enhanced review, and are required to independently meet the obligations of PCI SAQ-D.
Please reach out to Helcim at [email protected] or 1-877-643-5246 prior to completing your sign up if you are planning to send full card numbers.
Helcim recommends that whenever possible, businesses use Helcim.js to tokenize the card and then use the API to run a transaction with that token instead of sending full card numbers. Using Helcim.js will significantly reduce your PCI Compliance requirements as sensitive card information is not processed or transmitted by your servers.
This information applies to businesses that cannot use Helcim.js to tokenize card information and want to use the Helcim API, integrate with WHMCS, or use a similar integration. If you are unsure if this applies to you, our support team is happy to help review your unique needs.
If you want to send full card numbers through the Helcim API you will need to do the following:
- Contact Helcim to review your business needs BEFORE signing up for Helcim
- Once you have spoken to Helcim, you can proceed with completing your sign up
- After signing up, read, complete, and sign the PCI SAQ-D within 90 days. Your dashboard will start to remind you 45 days after your account activation.
- Once complete, the SAQ-D needs to be uploaded to the dashboard in your Helcim account
The SAQ-D must be completed, signed and uploaded annually. You will be responsible for complying with all of the obligations of the SAQ-D, for example arranging to have your network scanned. Please also note that AVS information will be mandatory for all transactions.