The second* longest wait in shopping cart history is over. BigCommerce is finally PCI Compliant.
Not much else to say except hopefully this frees up the support team to work through some of the most pressing issues, and hopefully allows people to look into BigCommerce as a serious option (I know several of you excluded it form the outset because it wasn’t PCI Compliant).
Congratulations on getting your PCI Compliance BigCommerce, it is no small feat – but maybe next time don’t string us along with “it’ll be done in a month” comments – the hardest part was all the missed deadlines, dealines you imposed on yourself by the way.
Happy days – now where was that list of bugs I wanted them to look at.
Leave a note with the issues you would like dealt with now that BigCommerce is PCI Compliant and has free resources to burn.
There is a reply from some BigCommerce staff that is well worth reading
* The longest being the Magento installation
|
Share the Love
|
Get Free Updates
|
Related posts:
- Is BigCommerce PCI Compliant
- PCI Compliant Shopping Carts
- Big Commerce PCI-DSS
- BigCommerce Developer
Tags: BigCommerce

Wow, really? BigCommerce is PCI compliant and that’s all you can say? Nothing positive ey? I am a customer and never once saw them say “it will be done in a month”. You obviously have no idea what goes into becomming PCI compliant. I guess that’s why you blog and they run a successful business. SMH.
I thought I was quite polite given how long it has taken. I even said Congratulations. Sorry Dave but you dropped the ball on this one – they did not manage people’s expectations effectively. I presume you work for them (because this is not the first blog you have posted about BigCommerce PCI Compliance on this morning) I will give you a brief run down of missed deadlines:
7 months ago (after BigCommerce missed the June 30, 2010 deadline) Chris Boulton said “We’re almost there, and are just about to flick the switch on a few remaining tasks that need to be completed”
After they missed the September 30, 2010 deadline:
5 months ago Chris Boulton proclaimed “98% of our documentation and remediation proof is in the hands of our auditors” & “ONLY documentation – the BigCommerce servers/infrastructure meets all of the PCI compliance requirements”
5 months ago Mitchell Harper told everyone the final assessment was booked for the following week – and then strangely told people to use a different e-commerce platform if they were sick of waiting.
10 days ago after BigCommerce posted the teaser on Facebook Luke Dyer is quoted as saying ” I understand that this has been a long process of you hearing this same statement before, however we are very close”
Just because you hid the threads on http://community.bigcommerce.com/bigcommerce doesn’t mean the list of broken promises and missed deadlines has gone away – you annoyed a lot of people and could have handled the very difficult task of getting PCI Compliance with significantly more professionalism.
Agree on all points Andrew. I started with BC in Jan 2010 and left last month. The way they handled the compliance issue was beyond unprofessional. To hide the threads of complaints is such a slap in the face, I find Mitch an arrogant man who cares more for “the thrill of the kill” than for customer satisfaction and client retention.
I truly do not understand why people stick with this company just by the chance that they could have been fined or had to hold off on SSL’s and yet the founder was nowhere to be seen or posted flippant responses when he did make an appearance on the boards. The posts by Mitch lack integrity as did his actions, so why would I invest my time and money in a company I do not want to be associated with? Wake up everyone, Mitch Harper is nothing more than a snake oil peddler. You could not pay me to wear one of the free t-shirts everyone jumps for.
Not everyone understands how important being PCI Compliant is…
Are the others ?
Volusion, Shopify, etc.
What are the implications if it is NOT ?
If I have a traditional site using Paypal,
is Paypal PCI Compliant ?
Thanks,
There is a list of compliant carts at http://andrewbleakley.com/blog/pci-compliant-shopping-carts/ – Paypal long ago passed everything it needed to (in fact everyone but BigCommerce has)
Thank you for calling Big Commerce’s PCI compliance the second longest wait in shopping cart history. It carries with it a sense that it was something worth waiting for.
No Dave Draper does not work for Big Commerce. I know this because I do, and I don’t know anyone there who would write to you in such a manner. I know that in time you will see that Big Commerce is devoted to creating a wonderful product and doing everything we can to change our client’s lives for the better. We do not expect to meet the whole world’s expectations… being in the blogging business I know you can understand that is impossible.
What we do at Big Commerce is put our heart and soul into helping everyone we can for as long as we can. We strive to make Big Commerce a product that can change lives for the better.
“The ultimate measure of a man is not where he stands in moments of comfort and convenience, but where he stands at times of challenge and controversy.”
I admit that it is difficult to read negativity surrounding something for which you work so hard and part of me wanted to use this forum to lash out now that we are PCI compliance. However I will swallow my pride for that is not the Big Commerce philosophy… Big Commerce is not perfect and never will be.
What Big Commerce does stand for is being honest and genuine in our desire to be the best. Not the best for ourselves, but for all who use our product. I am sure many will doubt my honesty, but the beauty is that I don’t need anyone else to believe me. Truth does not require belief. Andrew, I appreciate your drive to critique as that only opens our eyes to what work still needs to be done and makes us stronger. Thank you for what you do here.
Thank you for your reply (and restraint) txex02. Yes it was worth waiting for, I am sure if you check your customer records you will find that most of us did wait.
We all appreciate the work that was put in and no one for a second thinks it was anything but an enormous task – the problem has only ever been BigCommerce getting our hopes up with false expectations.
No one doubted you would get there, we just got sick of being told how quickly you would.
Thank you for taking the time to reply, I am positive many people will be encouraged to see that BigCommerce is staffed by intelligent and patient people.
Have a wonderful 2011, we all look forward to moving on from PCI Compliance and seeing what wonderful new features you are going to bring to our favourite shopping cart