payFURL Vault: tokenise once, use it everywhere.
payFURL Vault stores a customer's card details and hands back a token to use in their place. Card details are tokenised the first time a customer pays, and that single token works across every provider connected to your account. Card data never touches your servers, and the vault is PCI DSS v4.0.1 Level 1 certified.
What is a payment vault?
A payment vault stores a customer's card details and hands back a token to use in their place. payFURL Vault does that as an additional layer alongside whatever vault your payment provider already runs, not instead of it.
Why use payFURL Vault if my provider already has a vault?
A provider's own token only works with that provider. payFURL's vaulted record isn't tied to one provider, so you can run two providers side by side, fail over automatically, or add a new provider later without re-collecting a single card.
How is a token different from encryption?
Encryption is reversible: anyone with the right key can turn the data back into the card number. A token has no mathematical relationship to the card number it replaces, so it can't be turned back without access to the vault that issued it. payFURL Vault uses both.
Does payFURL Vault reduce my PCI scope?
Usually, yes. Raw card data terminates inside payFURL's PCI-scoped environment, never on your server, so a business using payFURL's hosted checkout can usually attest to SAQ A, the lightest self-assessment.
Where is the card data held?
Client data collected in Australia stays in Australia. Stored card data is encrypted with AWS Key Management Service, with managed key rotation.
Keep your customers' cards,
whichever provider you use.
Talk to a payments specialist about payFURL Vault.