Diff: FAQ #1038
Does PCI DSS apply to "hot cards," fraudulent or invalid card numbers, or cancelled cards?
Earlier Version
Later Version
Removed
Added
When payment cards expire, the same account number is often reused on the new card with a different expiry date. The PAN
Entities should retain PAN based on business/legal needs, as defined in data retention policy (PCI DSS Requirement 3.1). Remember: If you don?t need it, don?t store it.
Disclaimer: This FAQ has been processed for display on this website and may contain errors. Please check the original FAQ on the PCI SSC website for the authoritative version.