
You Can Trust TicketSignup to Keep Your Data Safe.
One of the most important questions when vetting a new vendor is how will you handle my data and payment information to keep it safe? At TicketSignup, we know our primary responsibility is collecting and safeguarding customer’s personal and payment details. There are a few reasons you can trust us.
We’ve been doing this for more than 15 years.
TicketSignup has processed more than $3 Billion for more than 39,000 events. TicketSignup builds secure and reliable technology that you can trust, with PCI Level 1 compliant payment processing, secure data storage and payment processing.
Our systems have been up 99.999886% since 2015. That’s just 6 minutes of downtime over 10+ years.
We are PCI Level 1 Compliant and prioritize secure transaction processing.
PCI Level 1
TicketSignup has achieved the highest level of PCI compliance as evidenced by our Attestation of Compliance. Our volume of transaction processing required us to go through a rigorous certification process, which included onsite reviews and scanning and vulnerability testing with an independent third party Qualified Security Assessor. As part of the certification process we implemented the following advanced security measures:
- Monthly process to install security patches
- Secure password storage with protections like bcrypt
- Secure user input fields with SQL prepared statements to prevent XSS attacks and SQL injection as well as CSRF attacks
- Advanced encryption key management procedures
- Secure network configurations with multiple levels of firewalls
- Employee, customer, participant segmentation and access control and login management
- 100% code review and change logs
- System hardening including implementation of Center for Internet Security recommendations
- OSSEC log analysis
- AntiVirus scanning including ClamAV
- Constant vulnerability scanning including implementing Nessus
Payment Facilitator
TicketSignup has taken steps as a company to meet stringent security, banking, VISA and MasterCard processing rules to become an authorized intermediary (Payment Facilitator) between credit card holders (participants) and event owners. This means that with our Advanced Payment Accounts we never handle your event proceeds. After the credit card transactions are settled for your event, the proceeds are held in escrow for your benefit with our back end credit card processing company. Funds transfers to you happen accurately and on time by either ACH or check based on the frequency of payment you have requested.
Our infrastructure is secure, redundant, and decentralized.
TicketSignup utilizes the latest technology and cloud architecture to meet our customers’ needs. Our cloud architecture benefits you with speed and scalability at a low cost, providing the ability to handle large events with 50,000+ participants attempting to register simultaneously. Information sharing is secure; we use multiple levels of firewalls and all pages are secured with TLS/SSL and HTTPS. People can access us from any device including computers, iPads, and both Apple and Android smartphones. You can count on our secure infrastructure to be highly available. This secure infrastructure allows you to be comfortable that your data is being handled properly and payments to you are accurate and on time.
We’re advocates of data privacy.
Data privacy is important to you and to your participants. Whenever we collect or transmit sensitive data, that data is encrypted and transmitted in a secure way. We don’t sell or share participant data with anyone other than the owner or Event Director of the event for which a participant has signed up. TicketSignup will not market or sell anything directly to participants who use our site. We only collect credit card information when a participant requests us to and if requested it is stored securely with a third party PCI Level 1 compliant vendor who specializes in credit card storage. View our Privacy Policy for more info.