M |
Michael Newman |
The fields on the credit card payment form as not standard HTML element types. The card expiry date should be two standard select elements for month and year. This will improve accessibility for any users that are using a screen reader.
As a side note these fields break the use of password managers / auto fill, The form mentions not to use a password manager / autofill but It would be better to fix the form rather than require the user to change their habits for this one site.
Kind Regards
Activity Newest / Oldest
Thomas Goess
Hi Mat, it appears you closed my other ticket or I can no longer find it. This is the section I am referring to. It is not the refund form it's this one, the card payment flow on renewals that I was asking if it is PCI DSS. The form seems custom which makes it look like it's possible custom on the backend to. It is slightly concerning of an organisation the size of motorsport Australia. Will also add it's strange you have to pick Visa or MasterCard as that can be determined from the starting card number. Along with the date picker it is a little odd. I am just concerned payment information is not being handled securely
Mat Wraith
Thomas,
Thank you for your follow-up. I appreciate your concerns regarding payment security.
I can confirm that the software used for processing payments is PCI DSS compliant. Ensuring secure handling of payment information is a priority for Motorsport Australia, and we take compliance with industry standards very seriously.
I have also reached out to the software provider for an official response regarding the security measures in place. Once I receive their reply, I will forward it to you for further reassurance.
Regarding your feedback on selecting Visa or MasterCard and the date picker, I appreciate your insights. While the current setup follows the provider’s implementation, I will pass your feedback along for consideration in future improvements.
Regards
Mat Wraith
Status changed to: Under review
Mat Wraith
Michael,
Thank you for your feedback, we have reported this short-coming to the developers of our Member Portal CRM solution, and I'm hoping they have a solution for use in future versions.
Mat.