About
This skill provides a comprehensive framework for achieving and maintaining PCI DSS (Payment Card Industry Data Security Standard) compliance within your application. It offers domain-specific guidance on the 12 core security requirements, secure data handling (including tokenization and AES-256-GCM encryption), access control implementation, and audit logging. By integrating these patterns, developers can significantly reduce compliance scope, ensure secure transmission of sensitive cardholder data, and effectively prepare for various levels of PCI self-assessment questionnaires (SAQs).