Promintly
← Back to home

Security and Card Data

1. Connection security

The whole site is served over HTTPS with a valid TLS certificate — there is no unencrypted version of it. Requests to the plain HTTP port are redirected, and the site sends HTTP Strict Transport Security so your browser refuses to connect insecurely afterwards.

Check for the padlock in your browser's address bar and confirm the domain before entering anything.

2. Your card details never reach us

We do not ask for, receive, store, process or transmit card numbers, expiry dates or CVC/CVV codes. When you choose to pay, you are handed to the payment page of our acquiring bank's processing centre, and you enter your card details there.

What comes back to us is only the result of the payment. There is no card data in our database to lose.

Card payments are handled in accordance with the Payment Card Industry Data Security Standard (PCI DSS) and the data-protection rules of the payment systems.

3. 3-D Secure

Card payments are protected by two-factor 3-D Secure authentication. Your bank will ask you to confirm the payment — typically with a one-time code or through its own app — before it is approved.

We do not store card numbers for repeat use, and we do not bypass 3-D Secure on subsequent purchases.

4. Your account

— Passwords are stored only as cryptographic hashes and cannot be read back, by us or by anyone else. — Sessions live in httpOnly, Secure, SameSite cookies, so a script on another page cannot steal them. — Sessions are rotated regularly and invalidated everywhere when you change your password. — Access to the database is restricted and audited.

Use a password you do not use anywhere else, and sign out on shared devices.

5. What we will never ask for

We will never ask you — by phone, email, chat or SMS — for your full card number, its CVC/CVV, its PIN, a 3-D Secure confirmation code, or your account password. No genuine member of our staff has any reason to want them.

If someone asks you for these in our name, do not give them out; report it to security@promintly.com straight away.

6. Reporting a problem

Found a security flaw in this site? Write to security@promintly.com. Please give us enough detail to reproduce it, and time to fix it before you make it public.

If you see a charge you do not recognise, contact your card issuer first — they can block the card — and then tell us so we can investigate on our side.

Cards we accept