Citinet Solutions, LLC uses industry-standard controls so that when you pay online for software, subscriptions, or professional services, your payment information is transmitted and processed securely. This page describes those controls for customers and for our acquiring bank and processor.
PCI DSS Processor
Tokenized Cards
No CVV Storage
256-bit in transit
How a Payment Is Processed
- You review the order, fees, and our Refund Policy on the checkout page.
- You enter card or bank-account details in a secure field hosted or tokenized by our processor.
- The connection is encrypted with TLS (the same class of encryption used by banks). Data in transit uses 256-bit TLS where the browser supports it.
- The processor authorizes the charge with the card network and returns an approval or decline. We receive a token or transaction ID, not the full primary account number.
- You receive an on-screen confirmation and, when email is provided, a receipt. The charge will appear on your statement under a Citinet Solutions descriptor.
Who Processes the Card
Online card and ACH payments are processed by Network Merchants, LLC (“NMI”) and the acquiring bank that underwrites the Citinet merchant account. NMI is a payment gateway that supports PCI DSS–compliant hosted fields, tokenization, and optional payer authentication (3-D Secure).
Citinet is the merchant of record for charges billed by Citinet Solutions, LLC. For some product lines, Citinet may also operate as the gateway / processing backend for affiliated software brands. In every case, full card data is handled inside the processor’s validated environment, not in an unsecured Citinet form.
What We Store — and What We Do Not
- We do store: your name, business name, billing address, email, phone, last four digits of the card, card brand, expiration month/year, transaction amount, date, and authorization code, as needed for receipts, tax records, and support.
- We do not store: the full primary account number (PAN), the CVV/CVC/CID security code, or magnetic-stripe / chip track data. Security codes are used only for the authorization request and are not retained after authorization.
- Where a card is saved for recurring subscription billing, the processor stores a token. Citinet staff cannot view the underlying full card number.
Encryption and Site Security
- Website and checkout communications are encrypted with TLS. Certificates are kept current.
- Application data Citinet hosts is encrypted in transit (256-bit TLS/SSL) and, for custom workflow systems we host, at rest using AES-256, as described on our Security page.
- Administrative access uses strong authentication. We monitor systems for availability and suspicious activity.
- We do not send full card numbers by email, chat, or ticket.
Cards and Methods We Accept
Unless an invoice states otherwise, checkout accepts major credit and debit cards (Visa, Mastercard, American Express, and Discover) and, where enabled, ACH / electronic check. Availability of a method is shown on the checkout form at the time of payment. We may require AVS (address verification) and the card security code on card-not-present charges.
Recurring Billing
If you purchase a subscription, you authorize Citinet and its processor to charge the saved payment method on each renewal date until you cancel under the Refund Policy. You can update the payment method by contacting us. A failed renewal charge may be retried and may result in suspension of access until the balance is cured.
Payer Authentication and Fraud Controls
We may use address verification (AVS), card security code checks, device and velocity screening, and 3-D Secure / payer authentication when supported by your card issuer. These checks protect both you and Citinet. A transaction that fails verification may be declined even if the card is otherwise valid.
Your Responsibilities at Checkout
- Confirm you are on an official Citinet domain (citinetsolutions.com or another domain we have identified in writing) before entering payment details.
- Do not send card numbers to us by email or voicemail.
- Use your own payment method, or a method you are authorized to use for the business.
- Keep account credentials confidential.
- Review the order total, billing frequency, and refund terms before submitting.
Receipts, Statements, and Questions
Approved charges appear on your card or bank statement as Citinet Solutions (or a closely similar descriptor). If a charge looks unfamiliar:
- Check spam for a receipt from Citinet;
- Contact us before filing a dispute so we can identify the invoice quickly;
- Email privacy@citinetsolutions.com or call (914) 449-4600 or (212) 951-7200.
Refund timing and eligibility are described in the Refund Policy. General contract terms are in the Terms & Conditions. Personal data practices are in the Privacy Notice.
PCI DSS Role
Citinet reduces the scope of cardholder data in its environment by using a processor-hosted or tokenized checkout. Our processor maintains PCI DSS certification for the systems that receive raw card data. Citinet’s obligation is to never request or retain prohibited card data outside those systems and to keep our site and workstations consistent with that reduced scope.
Merchant Contact
Citinet Solutions, LLC
108 Village Square, Suite 189
Somers, NY 10589
Phone: (914) 449-4600 or (212) 951-7200
Email: privacy@citinetsolutions.com
Web: citinetsolutions.com/contact