
PCI DSS
PCI DSS is the payment-card industry’s security standard, mandated by the major card brands. Sledge is not assessed against it. Sledge processes payments through a third-party provider, which is the arrangement that keeps full card numbers off Sledge servers.
PCI DSS is on the Sledge roadmap. There is no report or assessment to share yet, and this page will say so until there is.
Why PCI DSS is on the roadmap
A PCI DSS assessment is what would let Sledge state its own payment-security posture, rather than pointing at the provider that handles the card data.
Card numbers never stored
Full card numbers do not touch Sledge servers — the processor tokenizes them. This one is true today.
Tokenized payment methods
Saved payment methods are stored as tokens rather than raw card data.
Smaller compliance scope for you
Card handling sitting with a certified provider shrinks what you have to assess.
Independent validation
An assessment is what turns the above from a description into a verified claim.
What it covers
PCI DSS protects payment card data at every step of a transaction:
Run your back office on software you can vouch for
Independently assessed. No contracts. No setup fees.