[client-side security] expand PCI DSS compliance page - #33199
Open
ngayerie wants to merge 3 commits into
Open
Conversation
🚀 Deploying Preview to Cloudflare 🚀Preview URL: https://dee-3623-client-side-pci-dss.previews.developers.cloudflare.com (commit 3d11432)This URL reflects your latest Preview deploymentPreview Deployments by commit
|
Contributor
|
This pull request requires reviews from CODEOWNERS as it changes files that match the following patterns:
|
ngayerie
marked this pull request as ready for review
September 3, 2026 06:32
Contributor
Review✅ No issues found in commit Code ReviewThis code review is in beta and may not always be helpful — use your judgment. No code review issues found. ConventionsNo convention issues found. Style Guide ReviewNo style-guide issues found. CommandsOnly codeowners can run commands. Post a comment with the command to trigger it.
|
Contributor
|
Preview URL: https://3d11432e.preview.developers.cloudflare.com Files with changes (up to 15) |
DEE-3623
ngayerie
force-pushed
the
dee-3623-client-side-pci-dss
branch
from
September 4, 2026 11:34
4890173 to
4a60052
Compare
DEE-3623 - Replace overclaiming "HTTP security headers and payment page content" with "monitored client-side resources on payment pages" - Replace "Alerts fire when scripts, connections, or cookies...change" with "Alerts can identify changes to monitored client-side resources" - Removes undocumented header/cookie-change alerting claim
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Expands the client-side security PCI DSS documentation to meet requirements 6.4.3 and 11.6.1 introduced in PCI DSS v4.0.
DEE-3623
Changes
/client-side-security/reference/pci-dss/: expanded from a one-paragraph stub to a full requirements mapping table for PCI DSS v4.0 req 6.4.3 (payment page script management) and 11.6.1 (tamper detection), with setup steps and cross-links to the SSL PCI DSS guide and Cloudflare Trust Hub