Re: Credit cards
| From: | charette at sneezy dot org | Date: | Fri, 06 Oct 2000 15:25:53 +0000 |
| Subject: | Re: Credit cards | ||
| Groups: | php.general | ||
| Request: | Send a blank email to php-general+get-18907@lists.php.net to get a copy of this message | ||
> Does anyone know if php or mysql has a simple encryption function?
Simple bi-directional (encode/decode) functions are, by definition, simple to decode. That's
why you always use strong encryption methods when storing sensitive information. Unidirectional
(encode only) algorithms such as a MD5 hash are somewhat simpler to implement because you don't
have to recover the original information.
The mcrypt functions (some of them, anyway) are strong enough for credit card numbers. If, as a
customer, I found out that someone was storing my credit card number with only minimal encryption I
would be a bit upset, to say the least. It's bad enough as it is ...
Mark Charette@sneezy.org