PCI Assessments Center
Loading your workspace…
Merchant levels are set by the payment brands, not by PCI SSC, and determine how compliance must be validated. Level 1 merchants require a Report on Compliance; lower levels may be eligible to self-assess.
The free SAQ selector walks the official PCI SSC v4.0.1 decision flow, records every answer and re-derives the recommendation server-side with a confidence score.
Definitions paraphrased from the PCI DSS v4.0.1 standard and the PCI SSC Glossary of Terms, Abbreviations and Acronyms. Independent summary; not endorsed by PCI SSC.