4 ms·
I've heard somewhere that Vultr retains your stored credit card indefinitely (even after you close your account). It sounds a bit weird, that's why I avoided th
by apeacox 10y ago
I've heard somewhere that Vultr retains your stored credit card indefinitely (even after you close your account). It sounds a bit weird, that's why I avoided their services. Can someone confirm this?
- Zekio 10y agoThey do accept paypal and bitcoin, if you don't want to give them your credit card information
- snowpanda 10y agoLast time I tried that they needed a card on file to pay with bitcoin. Sigh.
- Zekio 10y agoAccording to their site you need to either link a credit card or add 5$ credit via paypal in order to use bitcoin "Account must be funded by credit card or PayPal before making a Bitcoin deposit."
- AtheistOfFail 10y agoThat is quite possibly the most stupidest fucking thing I've ever heard in my life.
- maxerickson 10y agoIt's probably because they don't want to run anonymous accounts, which I can see taking issue with, but it isn't really stupid.
- nodesocket 10y agoBelieve it or not this is actually very common. In fact a lot of people who integrate Stripe recommend this pattern. They recommend to never delete customers and cards in Stripe, instead just remove the subscription from the customer. The idea is, if the customer wants to come back and reactivate service they don't have to provide billing details again. I don't do this though. When customers cancel my startup, I delete the card and cancel the subscription in Stripe but leave the customer.
- yborg 10y agoThis pattern can be recommended so long as there is no liability for financial information disclosure. When you're hacked and a customer who closed their account 2 years ago has their CC info used for fraudulent transactions, you just trollface and move on. This is why I am baffled as to why the CC companies eliminated the transient number technology, which was pefect for e-commerce vendors like this. At least with those, after 3-6-12 months the number expires and no damage done when the vendor is hacked. I assume it was dropped because this technology complicated data mining.
- vertex-four 10y agoNote that in the case of Stripe, the site doesn't hold onto "financial information" per se - they hold onto tokens where Stripe is the holder of the information, and they can't access the card number or CVV after it's been sent to Stripe - so all fraudulent transactions would have to be requested through that Stripe account.
- hdhzy 10y agoThey shouldn't have access to card number and CVV either way because usually they are not PCI-DSS certified. Stripe handles that in an iframe (requirement of PCI). CVV cannot be stored at all even by Stripe.
- nodesocket 10y agoIf using Stripe, Braintree, etc you should never ever be storing any financial data.