Interactive tracker covering all 12 PCI DSS 4.0 requirement domains. Mark compliant, gap, or N/A for each requirement. Export a status report when done. No signup needed.
Any business that accepts, processes, stores, or transmits credit card data must comply with PCI DSS β regardless of size or transaction volume. This includes retail stores, law firms, medical offices, and any other business that takes card payments.
Non-compliant businesses can face fines of $5,000 to $100,000 per month from card brands, increased transaction fees, mandatory forensic audits after a breach, and in serious cases loss of the ability to accept card payments.
No. This tracker helps you understand your posture across the 12 requirement domains and identify gaps to address. A formal PCI assessment requires a Qualified Security Assessor (QSA) or a Self-Assessment Questionnaire (SAQ) depending on your merchant level. Use this as preparation, not a substitute.