API Tokenization

HostedPCI understands that not every merchant can change their entire collection process to support our iFrame solution — yet they would still like to reduce their PCI scope by not needing to store the credit card data. To support these needs, HostedPCI provides the ability to tokenize a credit card through an API after it has been collected by the merchant. This service allows merchants to keep their existing checkout page without the need to store or exchange the credit card after it has been collected.

Once merchants have collected the credit card through their own checkout page or over the phone, they can send this information to HostedPCI via an API call in order to retrieve the token. HostedPCI replaces the PAN with a desensitized token that shares the first 4 and last 4 digits of the credit card, while the other 8 digits are randomly selected. This combination can be customized according to the merchant’s needs. Once the tokens are generated, they are used for all other payment transactions while the original credit card PAN is stored securely in HostedPCI’s vault. Each merchant gets their own designated vault.

By utilizing our API Tokenization solution, merchants can reduce their PCI scope since they do not store the credit card data within their environment.

If you would like to know more about this solution you can contact us either by phone or fill out our contact form and we will get back to you.

Additional Resource: