[FX.php List] Anyone done a PHP integration w/ Paypal?

Bob Patin bob at patin.com
Thu Dec 5 09:53:52 MST 2013


I secured a set of web apps for another client, hired an outside consultant to get me PCI-compliant, but what I realized is that ALL he did was to wrap my POST variables like this:

$name = htmlspecialchars($_POST[’name']);

This particular company runs a PCI-compliance test every month and we always pass, so getting PCI-compliant is a snap…

I may tell this client though that I recommend using a hosted order page (using Paypal’s card-input page)… 

BP

Bob Patin
Longterm Solutions
bob at longtermsolutions.com
615-333-6858
FileMaker 9, 10, 11 & 12 Certified Developer
http://www.longtermsolutions.com
-
iChat: bobpatin at me.com
Twitter: bobpatin
—
FileMaker Consulting 
FileMaker Hosting for all versions of FileMaker
PHP • Full email services • Free DNS hosting • Colocation • Consulting

On Dec 5, 2013, at 10:18 AM, BEVERLY VOTH <beverlyvoth at gmail.com> wrote:

> I have used iframes/frames to "spoof" not leaving the site, but I don't like to do that anymore. I just tell the clients to be secure, use the secure payment gateway as it's intended - they have the responsibility.
> 
> Beverly

-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://mail.iviking.org/pipermail/fx.php_list/attachments/20131205/592ec9d2/attachment.html


More information about the FX.php_List mailing list