Skip to main content

ClientPay Security Overview

Our commitment to protecting your firm and your clients through industry-leading security standards.

Updated over 2 weeks ago

🎖️ Level 1 Certification

ClientPay is responsible for the security of all cardholder data that our virtual terminal possesses and transmits.

Highest Industry Standard: ClientPay’s online portal is certified as a Level 1 Service Provider. This is the highest security level available in the payment industry.


🔒 Our Security Responsibilities

We maintain several layers of security to ensure your data remains protected at every touchpoint. Our core security measures include:

  • Advanced Encryption: We utilize high-level cryptography to protect sensitive information within the payment system.

  • Persistent Monitoring:

    • Quarterly Scans: Performed by a Qualified Security Assessor (QSA).

    • Annual Audits: Rigorous yearly reviews conducted by a QSA.

  • Compliance Excellence: Ongoing completion and maintenance of the Level 1 PCI Compliance Assessment.

  • Post-Transaction Safety: Card details are encrypted immediately, ensuring information is never exposed once a transaction is finalized.

  • Secure Documentation: Receipts are truncated to expose only the last 4 digits of a card number.

  • Access Control: We enforce a security-code validation for all merchant logins every 30 days.

Did this answer your question?