Cornerstone Payments NC works with PCI-DSS validated processors and sponsor banks to help North Carolina merchants accept card payments safely and in accordance with card network rules and applicable law. This page summarizes the compliance framework behind the services we offer.
PCI DSS
The Payment Card Industry Data Security Standard (PCI DSS) is the security standard maintained by the major card brands for organizations that handle branded credit and debit cards. Our platform partners are PCI-DSS validated, and the terminals, gateways, and point-of-sale systems we deploy are designed to help keep cardholder data out of your environment through end-to-end encryption and tokenization.
Every merchant is responsible for completing an annual Self-Assessment Questionnaire (SAQ) appropriate to how they accept payments. We help you identify the correct SAQ and complete it as part of onboarding and ongoing account service.
Card Network Rules
Merchant accounts are governed by the operating rules of Visa, Mastercard, American Express, and Discover. These rules cover surcharging and cash-discount programs, chargeback rights, acceptable business categories, brand marks, receipt requirements, and prohibited transactions. We configure your account and equipment to align with these rules and provide guidance when your business model changes.
Anti-Money Laundering and KYC
Federal law and sponsor bank requirements obligate us to verify the identity of business owners and principals ("Know Your Customer"), monitor for suspicious activity, and report as required. During onboarding we collect ownership, tax, and banking details to satisfy these obligations.
Data Security
- Point-to-point encryption (P2PE) on supported terminals.
- Tokenization of stored card credentials through our gateway partners.
- EMV chip and contactless (tap) acceptance to reduce counterfeit fraud liability.
- TLS-encrypted transmission of transaction data to our processors.
Accessibility
We aim to make this website usable for everyone. If you encounter an accessibility barrier, please contact us and we will work to resolve it promptly.
State and Federal Regulation
In addition to card network rules, merchant services in North Carolina are subject to federal consumer financial protection laws and applicable state statutes. We work with legal and compliance counsel and with our sponsor bank to keep our program aligned with these requirements.
Reporting a Security Concern
If you believe you have identified a security vulnerability affecting Cornerstone Payments NC or one of our merchants, please email sales@cornerstonepaymentsnc.com with details so we can investigate. Please do not include cardholder data in your message.
Contact
Compliance or documentation requests? Email sales@cornerstonepaymentsnc.com.