TE
科技回声
首页24小时热榜最新最佳问答展示工作
GitHubTwitter
首页

科技回声

基于 Next.js 构建的科技新闻平台,提供全球科技新闻和讨论内容。

GitHubTwitter

首页

首页最新最佳问答展示工作

资源链接

HackerNews API原版 HackerNewsNext.js

© 2025 科技回声. 版权所有。

Show HN: Instantly make any Netlify form PCI DSS compliant

59 点作者 mahmoudimus将近 6 年前
We are big fans of Netlify [1] (it powers our website and blog!) and we wanted to scratch our own itch to comply with GDPR, as well as various upcoming data security regulations [3]. So we, Very Good Security [2], just released an add-on that lets you securely collect sensitive data (e.g. payments, PII, SSNs, identification, etc.) via web forms on Netlify.<p>With the new add-on, Netlify customers are shielded from data liability, breach risk and the compliance issues that come with holding sensitive data. So you can inherit PCI compliance from VGS (a level 1 service provider) and can fast-track other compliances like SOC2, HIPAA, etc.<p>You can read more about our add-on for Netlify on VGS’ blog:<p><a href="https:&#x2F;&#x2F;blog.verygoodsecurity.com&#x2F;posts&#x2F;securely-capture-sensitive-data-with-vgs-and-netlify&#x2F;" rel="nofollow">https:&#x2F;&#x2F;blog.verygoodsecurity.com&#x2F;posts&#x2F;securely-capture-sen...</a><p>and on Netlify’s blog:<p><a href="https:&#x2F;&#x2F;www.netlify.com&#x2F;blog&#x2F;2019&#x2F;06&#x2F;06&#x2F;very-good-security-add-on-collect-data-securely&#x2F;" rel="nofollow">https:&#x2F;&#x2F;www.netlify.com&#x2F;blog&#x2F;2019&#x2F;06&#x2F;06&#x2F;very-good-security-a...</a><p>Watch a quick video here: <a href="https:&#x2F;&#x2F;www.youtube.com&#x2F;watch?v=wtYzLdpSeJo" rel="nofollow">https:&#x2F;&#x2F;www.youtube.com&#x2F;watch?v=wtYzLdpSeJo</a><p>Try it out and let us know what you think! We’d love your feedback.<p>[1] <a href="https:&#x2F;&#x2F;www.netlify.com" rel="nofollow">https:&#x2F;&#x2F;www.netlify.com</a><p>[2] <a href="https:&#x2F;&#x2F;www.verygoodsecurity.com" rel="nofollow">https:&#x2F;&#x2F;www.verygoodsecurity.com</a><p>[3] California Consumer Privacy Act<p>[3] Colorado Protections for Consumer Data Privacy<p>[3] New York’s SHIELD act (<a href="https:&#x2F;&#x2F;www.nysenate.gov&#x2F;&#x2F;legislation&#x2F;bills&#x2F;2019&#x2F;S5575" rel="nofollow">https:&#x2F;&#x2F;www.nysenate.gov&#x2F;&#x2F;legislation&#x2F;bills&#x2F;2019&#x2F;S5575</a>)

8 条评论

ledgerdev将近 6 年前
Very cool, will try this out! I&#x27;ve been doing a fairly extensive integration with their primary VGS tokenization service and it&#x27;s been a solid, though young platform with a few missing pieces they have promptly addressed. The use of a programmable tokenizing L7 proxy seems to me the best path forward to isolate sensitive data in systems for regulatory and security purposes. If you store sensitive data in your application, you really should look into it.
bks将近 6 年前
I am not 100% but I believe that &#x27;Sure name&#x27; should be Surname <a href="https:&#x2F;&#x2F;www.screencast.com&#x2F;t&#x2F;VmRZ1dlH0T" rel="nofollow">https:&#x2F;&#x2F;www.screencast.com&#x2F;t&#x2F;VmRZ1dlH0T</a> <a href="https:&#x2F;&#x2F;en.wiktionary.org&#x2F;wiki&#x2F;surname" rel="nofollow">https:&#x2F;&#x2F;en.wiktionary.org&#x2F;wiki&#x2F;surname</a>
评论 #20240101 未加载
sagebird将近 6 年前
If I ask someone to place a diamond in a safe at Fort Knox, and then publish the name and password to retrieve the diamond on a billboard, is the diamond safe?
andrenotgiant将近 6 年前
This is interesting, but one thing I didn&#x27;t understand from the video demo (which shows a background check form and a payment form)<p>Aren&#x27;t these SaaS tools like Stripe (payments) and Checkr (background checks) already built in a way that allows you to never have sensitive PII like payment info or SSN touch your servers?
评论 #20239062 未加载
评论 #20240523 未加载
mackatsol将近 6 年前
Is this new service HIPAA compliant as well? Can I collect patient health info, have it stored in a separate vault from all my other data.. and have it be encrypted at rest?
评论 #20239117 未加载
cdepman将近 6 年前
This is great, thanks! The first two links are truncated and broken, however. Please update!
评论 #20238933 未加载
WrtCdEvrydy将近 6 年前
Interesting, blog seems broken, bad copy paste?
评论 #20238928 未加载
aanari将近 6 年前
Nice work VGS team!