Stripe’s platform meets the highest certification standards to help reduce compliance burdens for your business and keep payments safe.
Our team includes world-class security experts, all focused on strengthening our infrastructure.
Stripe is certified to the highest industry standards and has obtained regulatory licenses around the world.
PCI DSS Level 1 certification
Money Transmitter Licenses across US
E-Money Licenses in the EU and the UK
SSAE18/SOC 1 type 1 and type 2 and SSAE18/SOC 2 type 1 and type 2 reports
PSD2 and Strong Customer Authentication (SCA) compliant
All card numbers are encrypted on disk with AES-256. Decryption keys are stored on separate machines.
Stripe’s infrastructure for storing, decrypting, and transmitting card numbers runs in separate hosting infrastructure, and doesn’t share any credentials with Stripe’s primary services.