PracticeQ Payments: PCI Vulnerability Scan
If your practice completes the SAQ A or the SAQ B-IP to attest to your PCI compliance, you will undergo a vulnerability scan. Here is how to navigate this in your PCI toolkit.
If you manually enter any payment card details:
- Log into your PCI toolkit: https://stax.pcitoolkit.com/version3/SignIn.aspx
- Click Next to begin the process.
- Select Use Clone Systems as a scanning vendor.
- Enter the public IP address of the network where the user inputs card information. To find this IP, click the blue What is my IP Address? link to the right.
- Click Submit.
- On the next page, click Confirm to schedule the scan.
If clients ONLY enter their payment card details online:
- Log into your PCI toolkit: https://stax.pcitoolkit.com/version3/SignIn.aspx
- Click Next to begin the process.
- Select Use Clone Systems as a scanning vendor.
- Enter the following IP: 216.21.12.26
- Click Submit.
- On the next page, click Confirm to schedule the scan.
Scan Details
- Scans are performed on 12 hour rotations, so you can expect your results the following day.
- You will be notified of the scan results by email and through the toolkit dashboard.