Security Briefing Introduction
Security method
printedgolfballs.co.uk allows orders to be placed and sent over the Internet using PGP encryption protocol. At the point of sending your details, we heavily encrypt all sensitive data including your credit card information.
Encryption occurs on the printedgolfballs.co.uk server. At no stage is the transaction decrypted whilst it travels over the Internet, or whilst it is stored on a web site. In addition, orders (including credit card details) are only stored on a web site until we download them to our office.
The encryption is carried out by using, Diffie-Hellman key exchange, which has been published for over 25 years. RSA have based their encryption method on the same fundamental mathematics. RSA (used in SSL) is essentially a derivation of Diffie-Hellman. The main benefits for using this method are;
- the algorithm has been around for many years and has stood the test of time
- It is now patent-free
- It has been selected by an increasing number of industry leaders as their system of choice
- Microsoft for NT 5
A short description of the Diffie-Hellman algorithm can be found at Racal's web site http://www.racal.com/rdg/products/diffie.htm
Interception of packets on the web
printedgolfballs.co.uk orders are totally secure against this threat - data is only transmitted once it has been encrypted. No data appears in clear on the Internet in transit. In practise, interception of packets on the web is now a remote possibility.
Breaking security on the web site enabling hackers to copy web orders
No web orders are stored on the site. All credit card details are encrypted through PGP and are immediately sent to printedgolfballs.co.uk in a fully encrypted state. Only the administrator user at printedgolfballs.co.uk has the ability to unlock orders placed, your credit card details will remain fully encrypted until received by the official recipient.
Summary
Overall, the website complies with current security regulations, and makes every effort to ensure safe order processing.
If you require any further information, please contact us