If you are new, you have 90 days to become Processing Card Industry (PCI) Data Security Standard (DDS) compliant. The timeline of communications for non-compliant fees notification and billing is:
- Month One: Merchant information is added to the SysNet Portal. A PCI DSS compliance credentials email is sent from SysNet, and regular communications begin.
- Month Four (after 90 days): Considered as PCI DSS non-compliant and a warning of a monthly PCI DSS Non-Compliance Fee is in the message section of the monthly statement. This message continues each month until validation is complete.
- Month Five: An additional opportunity to become compliant.
- Month Six: Billed monthly PCI DSS non-compliant fee at month-end