NavigationWho's online
There are currently 0 users and 0 guests online.
Site NotesNPTECH.INFO is a resource aggregating nonprofit technology information from across the Internet. There are no user accounts here - please ignore the login box. NPTech.Info is an adjunct of Techcafeteria. User login |
Jon Stahl's Journallinks for 2008-11-19
Categories: Blogs
Musings on ecommerce and PCI compliance for nonprofitsI’ve been doing some thinking and planning about how to build some better online donation tools for small to midsize nonprofits. In the process of doing some of that background research, I’ve come across what I think is a pretty big latent risk to lots of nonprofits (and small businesses) that are doing online transactions. It has an acronym: PCI, or PCI-DSS. It’s the set of security standards put in place by the credit card industry over the past few years, in attempt to limit the risk of catastrophic data security breaches that cause criminals to get their hands on credit card information of innocent folks. What PCI says in a nutshell is this: if your computer systems store, process or transmit credit card information, then there are various security processes and safeguards that you MUST have in place, you must verify that you have these measures in place, and you must submit to periodic testing to make sure you have them in place. The companies that issue merchant accounts are responsible for verifying the compliance of their small customers. The self-assessment form for the most common scenarios runs to 40 pages, and you have to be able to answer “YES” to every question in order to pass. Why is this a problem? Well, obviously the intention here is good. Credit card data security is an incredibly important issue. But there are a ton of nonprofits and others that operate small ecommerce sites using off-the-shelf ecommerce software such as ZenCart or Magento, or extensions to popular open-source CMSes such as Joomla, Drupal or Plone. These systems, properly configured are quite secure (especially Plone!), and in truth, they are generally not storing or processing credit card data, merely instantaneously retransmitting it to an ecommerce payment gateway such as Authorize.net. Still, since these systems are “transmiting” credit card data, they clearly fall under the scope of PCI and those systems therefore must be PCI compliant under the rules. Failure to do this can expose an organization to fines, higher rates from their merchant account provider, or simply being cut off from the credit card system. Not good. So, with that setup, here are some questions/observations:
Categories: Blogs
links for 2008-11-18
Categories: Blogs
links for 2008-11-14
Categories: Blogs
I am the only one who finds Change.gov disappointingI’m really surprised by the adulation that the Obama transition team’s website, Change.gov, has gotten. To me, it looks like a pretty design (all of Obama’s design work has been really excellent!), and a few web forms that dump your information into a black hole, never to be seen again (so far). This is what “listening” looks like?
Categories: Blogs
Great glimpse behind the scenes of the campaignsNewsweek offers convincing evidence that “mainstream media” is still possible and relevant with a fantastic, in-depth look behind the scenes of an epic election campaign. Their web presentation is a bit choppy, but here are quick links to the seven in-depth chapters. Well worth a read.
Categories: Blogs
World Plone Day Seattle - A Huge SuccessThe team here at ONE/Northwest hosted Seattle’s World Plone Day event last night, part of a coordinated worldwide Plone “day of outreach” that reached over 22 countries.
Categories: Blogs
links for 2008-11-07
Categories: Blogs
Happy World Plone Day!Today is World Plone Day, a global “day of outreach” for the Plone open-source CMS community. In a few hours, we’ll be hosting 40+ folks here at ONE/Northwest HQ in Seattle, just one of the dozens of World Plone Day events taking place in over 22 countries around the world. It’s been a pretty amazing global effort, thanks to some great work from Robert Allende, Gerry Kirk, Constance Wilde, Tim Knapp and many others. And, judging from the IRC messages, Twitter posts, and live video streams, the various workshops have been well attended, enthusiastic and full of great Plone energy. I’m really excited to close out the day in style here in Seattle!
Categories: Blogs
links for 2008-10-31
Categories: Blogs
links for 2008-10-30
Categories: Blogs
Ballard and Fremont in the New York TimesBallard (and our neighbors in Fremont) get the in-depth treatment from the New York Times travel section. Very cool to see a photo of Ballard farmer’s market on the homepage of the Gray Lady!
Categories: Blogs
links for 2008-10-29
Categories: Blogs
Plone Code SwarmChris “cbcunc” Calloway has put together two great video visualizations of Plone’s community activity over the past eight (!) years.
Categories: Blogs
links for 2008-10-27
Categories: Blogs
links for 2008-10-26
Categories: Blogs
links for 2008-10-24
Categories: Blogs
links for 2008-10-23
Categories: Blogs
Socialst? Not.Obama’s no socialist, but McCain and Palin are acting more and more like fascist demagogues all the time. I’ll be glad when this election ends in a blowout that sends them both scampering back to their caves with the last remanants of the revanchist right.
Categories: Blogs
|
NPtech Tagged Info
Blogs
|