Yes and No. GDPR compliance is complicated and dependent on the country where you are based. However, we have extensive experience in this area and can advise you connected to your own website requirements.
The WP-Tonic’s website is 100% PCI and GDPR-compliant (USA laws,) using payment gateway-sanctioned industry best practices to ensure that your shopping experience, and that of your customers, is safe.
“PCI security standards are technical and operational requirements set by the PCI Security Standards Council (PCI SSC) to protect cardholder data. The standards apply to all entities that store, process, or transmit cardholder data – with guidance for software developers and manufacturers of applications and devices used in those transactions.
The Council is responsible for managing the security standards, while compliance with the PCI set of standards is enforced by the founding members of the Council, American Express, Discover Financial Services, JCB International, MasterCard Worldwide, and Visa Inc.” (From “PCI DSS Quick Reference Guide” published by the PCI Security Standards Council™)
In other words, WP-Tonic is as secure as a secure platform can be in this day and age. And as security standards and capabilities evolve, you can be sure that WP-Tonic will be among the first platforms to incorporate them.



