← Back to context

Comment by lotsofpulp

2 hours ago

What info can be gleaned from that? Surely the mere fact that you have a credit card means your name and billing address are floating around.

I guess your parking history around town could be valuable if someone is targeting you.

> What info can be gleaned from that?

The card number?

  • In 2026, having my credit card number compromised is the least of my worries. At least here there is an established process for denying charges and ordering a new card. As long as you're not using a debit card, this is not a big deal.

    • Ok, your card is compromised. It's been cancelled.

      One, how much money is in your pocket so you can eat?

      ok, you'll use your second ca.... oh, it has to be cancelled now too.

      Ok, lets wait a few days for another card, and lets go use it the first time, what hacked already, I guess I need to wait a few more days.

      >As long as you're not using a debit card, this is not a big deal.

      So screw 60% of all transactions done on a card? This doesn't seem workable.

      4 replies →

  • In USA, folks who check their statements monthly are at little risk of immediate financial pain there.

    When your lifetime of credit card transactions leaks, that could be financially painful, embarrassing, etc. (can be discriminated against, including with pricing)

    I do dislike creating a log of where I park on some random company’s server. Nice that ALPRs/govt.-funded corp spycams/Ring/etc. make sure the quarter method is minimally marginally effective at protecting privacy.

    • > In USA, folks who check their statements monthly are at little risk of immediate financial pain there.

      I had to fight a bank for months over a clearly fraudulent charge. Sometimes it's easy; other times it isn't.

  • who stores card numbers other than the processors? that should be a hangable offense. I've integrated card processing on multiple sites, and not once does the form come from me. I add the processor's JS, and it collects the data to move along. They then return to me a bit of information that includes success/fail so that I can decide what to do from there.

    • > I add the processor's JS, and it collects the data to move along.

      Consumers aren't gonna notice the difference if the site gets hacked and that JS is swapped out for a malicious set.

      3 replies →