Subscribe in NewsGator Online   Subscribe in Bloglines

Jun 26, 2007 2:39 PM

Minnesota Becomes First State to Make PCI Compliance Law

MINNEAPOLIS – Minnesota recently became the first state to turn a core requirement of the Payment Card Industry (PCI) Data Security Standard (DSS) into a law for all companies—including fitness clubs—that handle credit and debit card data.

Gov. Tim Pawlenty signed the Plastic Card Security Act into law in May. The law says that any company in Minnesota that suffers a data breach and is shown to have stored prohibited card data is liable and will have to reimburse banks for the cost of blocking the exposed cards and issuing new ones. Such companies are prohibited from retaining the full contents of a track of magnetic stripe data, the three- to four-digit security code on the back of the card by the signature block and any PIN verification code number. If a debit card with PIN is used, a company is prohibited from retaining the data more than 48 hours after authorization of the transaction.

The security requirements take into effect Aug. 1, 2007. The liability provision of the Minnesota law applies to data breaches occurring after Aug. 1, 2008. The provision requires companies to reimburse the card-issuing financial institution for the “costs of reasonable actions” to both protect its cardholders’ information and to continue to provide services to its cardholders after a breach.

Minnesota companies—including fitness clubs—that handle fewer than 20,000 payment card transactions yearly are exempted.

In Texas, the House of Representatives passed a bill in early May that would require companies to follow the PCI DSS, but the bill failed to make it through the Senate because of a lack of time. The bill went into the Senate’s Business and Commerce Committee on the last day the committee met.

Similar PCI bills to the ones in Minnesota and Texas have appeared in the legislatures in California, Connecticut, Illinois and Massachusetts.


Pam Kufahl

Talk Back

Pamela Kufahl

Editor

Do you have a comment on an industry issue, or would you like to write a letter for our Talk Back department about an article that appeared in Club Industry's Fitness Business Pro magazine? E-mail Pamela Kufahl, editor, or call her at 913-967-1815.

Ask the Experts

Ask The Experts

A panel of professionals answers your questions on a variety of topics.


Conexion llc

Software for Club Management

Dave Merrill: Chief Operating Officer

Become An Expert

Submit Your Questions About the Software.

Featured Content

Step by Step

How-to articles to help you improve retention, increase sales, energize your group exercise programming and more.

Executive Insights

Insights into what high-level club executives think about their business and industry trends.

 Newsbeat

News about fitness facilities, club owners, acquisitions, suppliers and more delivered to your in-box three times a month.

WebSavvy

Practical Internet strategies to help you build customer relationships, increase revenues and lower costs.

Back to Top
Browse Back Issues