[OPEN-ILS-GENERAL] Credit Card - Stripe Vs Paypal & PCI

Gagnon, Ron gagnon at noblenet.org
Tue May 9 17:03:35 EDT 2017


NOBLE uses Stripe in a similar way to GPLS.
Ron

On Tue, May 9, 2017 at 4:58 PM, Dawn Dale <ddale at georgialibraries.org>
wrote:

> Hi Josh,
>
> We are using Stripe and the credit card information does not reside on our
> servers.  We are accepting payments via the TPAC currently. To allow
> payments in the library, our libraries are setting up kiosk and having the
> patron go to their account and make the payment at the kiosk.  This keeps
> up PCI compliant.  As for the self check, my understanding is that it does
> not work currently.  We are talking about adding a link to the TPAC on the
> self check so that patrons can login and pay fines when they use the self
> checkout.  Like you, we do not want staff handling the patron credit card.
>
> I am not sure how the Paypal code works. I know the cost per transaction
> is less with PayFlow but there is a monthly charge, correct? With Stripe
> there is no monthly charge.
>
> I hope this is helpful.
>
> Dawn Dale
> Helpdesk Manager
> Georgia Public Library Service
> 1800 Century Place Suite 150
> Atlanta, GA 30345
> 404-235-7136 <(404)%20235-7136>
> ddale at georgialibraries.org
>
>
> On Tue, May 9, 2017 at 4:48 PM, Josh Stompro <stomproj at exchange.larl.org>
> wrote:
>
>> Hello, we are currently using payflow pro, which I think means that our
>> evergreen server handles the CC data and puts it in PCI scope.  From what
>> I’m reading, if we switched over to using Stripe, which uses a javascript
>> library client side to submit the payment, then it would take our server
>> out of scope.  Does the Paypal code work the same way?
>>
>>
>>
>> It looks like the tpac supports Stripe, but the web based self check does
>> not.  How about the staff client/web staff client payment interface.  Does
>> that support Stripe?
>>
>>
>>
>> Along the same lines, is there a way to disable the staff client credit
>> card interface.  We don’t want staff handling credit cards with that
>> interface, since they have to type in the code and info, which I believe
>> isn’t PCI compliant, but I haven’t found a setting to disable that but
>> allow tpac payments.
>>
>>
>>
>> Thanks
>>
>> Josh
>>
>>
>>
>>
>>
>> Lake Agassiz Regional Library - Moorhead MN larl.org
>>
>> Josh Stompro     | Office 218.233.3757 EXT-139 <(218)%20233-3757>
>>
>> LARL IT Director | Cell 218.790.2110 <(218)%20790-2110>
>>
>>
>>
>
>


-- 
Ronald A. Gagnon
Executive Director
North Of Boston Library Exchange (NOBLE)
Danvers, Massachusetts  01923
978-777-8844
www.noblenet.org
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://libmail.georgialibraries.org/pipermail/open-ils-general/attachments/20170509/3433f459/attachment-0001.html>


More information about the Open-ils-general mailing list