alt.hn

7/24/2026 at 1:47:21 PM

PCI DSS DMARC Requirement: What Section 5.4.1 Requires

https://dmarcguard.io/blog/pci-dss/

by meysamazad

7/24/2026 at 3:29:45 PM

this article takes more time to read than dmarc takes to implement

by john_strinlai

7/24/2026 at 4:27:23 PM

> The best practice is a policy banning PAN over email, instant messaging, SMS, and chat entirely.

Sounds silly to me. A PAN should never even touch an employee's computer.

by CodesInChaos

7/24/2026 at 4:34:12 PM

There are cases for card not present transactions, fraud and complex refunds but generally yes.

by dogma1138

7/24/2026 at 8:44:07 PM

Took me too long to realize this has nothing to do with the Peripheral Component Interconnect or Direct Memory Access

by yonatan8070

7/24/2026 at 4:51:03 PM

Kind of a weird post, since it acknowledges in the first 1/3rd that you don't need DMARC for PCI compliance.

by tptacek

7/24/2026 at 8:14:16 PM

two words: compensating control.

(But also setup dmarc)

by fragmede