Aren't these SaaS tools like Stripe (payments) and Checkr (background checks) already built in a way that allows you to never have sensitive PII like payment info or SSN touch your servers?
Aren't these SaaS tools like Stripe (payments) and Checkr (background checks) already built in a way that allows you to never have sensitive PII like payment info or SSN touch your servers?
Some services will give you the ability to handle PII or PCI (payments) data, but not all services make it so easy on their customers.
Also worth noting is that this Netlify integration allows you to collect sensitive info one time and then send it to as many vendors as you might need/want.
So, for example, if you get different levels of data from various background check providers, you could collect SSN, driver's license, other PII, etc. and run it through any number of vendors.
You also retain optionality and the ability to send your data wherever you want in the future.
(disclaimer: I work for VGS)
https://stripe.com/docs/security/data-migrations/exports
And it looks like they also support importing data from other providers:
https://stripe.com/docs/recipes/switching-to-stripe#migratio...