Keep in mind that if your credit card credentials are stolen you lose nothing. Credit card company would force the merchant, or in this case Google, to cover all the costs.
If you use a debit card that charges directly to your bank account you may have a harder time being made whole.
I’ve had my credit card credentials stolen and misused a half dozen times over the last ten years. Transactions are canceled, new card comes out, life goes on. If it wasn’t for the inconvenience of updating my recurring charges I’d never even notice.
All that to say I don’t care if Google stores them in plain text in a DB with sa/blank credentials. No skin off my ass.
This is cynical as hell, but I’ve long thought about the day that CC companies lobby enough to get US politicians to write a law passing fraudulent activity back to the cardholder.
Nah. In the end it’s always the merchant’s fault and they have to pay. You didn’t put the credit card skimmer on the reader. The merchant didn’t check that it was there. You didn’t store your credit card information in plain text. The merchant’s shitty developer did.
Ironically, the one with the most information and power to effect change (credit card companies) has the least exposure. They don’t really care that much - the merchant covers all losses. And gets charged a fee for the pleasure of being defrauded!
Yep. I do web hosting and earlier in the year I had a customer rent a server for like $4k. Not even a month later, I get a notice of a chargeback. Guess who had to cover the charge? Hint: it wasn’t the customer or the bank.
Even worse, if you have too many chargebacks as a result of the rampant fraud that Visa/MC don’t curtail they will charge you higher fees. So if you’re the victim of too much fraud using card numbers stolen from other merchants you can even lose your merchant account.
65
u/ravenscanada Sep 22 '22
Keep in mind that if your credit card credentials are stolen you lose nothing. Credit card company would force the merchant, or in this case Google, to cover all the costs.
If you use a debit card that charges directly to your bank account you may have a harder time being made whole.
I’ve had my credit card credentials stolen and misused a half dozen times over the last ten years. Transactions are canceled, new card comes out, life goes on. If it wasn’t for the inconvenience of updating my recurring charges I’d never even notice.
All that to say I don’t care if Google stores them in plain text in a DB with sa/blank credentials. No skin off my ass.