Security & Compliance
Treps provides payment infrastructure secured to banking standards. Card data, customer information and transaction records are always protected.
PCI DSS Level 1
The highest card industry security standard. Card details are never stored in your system.
3D Secure 2.0
Full 3D Secure 2.0 support for all banks. Prevent unauthorised transactions with identity verification.
Tokenization
Card numbers are converted to tokens immediately. Even in the event of a breach, real card data is never exposed.
SSL / TLS Encryption
All communication is end-to-end encrypted with TLS 1.2/1.3. Data is protected both in transit and at rest.
GDPR & KVKK Compliant
Personal and financial data is processed within the bounds of GDPR and Turkey's KVKK regulation.
Fraud Protection
Real-time transaction analysis and automated rule engine block fraudulent attempts instantly.
Security FAQs
What is PCI DSS compliant payment infrastructure?
PCI DSS (Payment Card Industry Data Security Standard) is an international security standard designed to protect cardholder data. Treps holds PCI DSS Level 1 certification — the highest level — meaning card details are never stored in the merchant's system and every transaction runs through a secure infrastructure.
How do you protect card data?
Treps uses tokenization: card numbers are instantly converted into unique tokens upon entry, so real card data never resides in the merchant's system. All data is encrypted both in transit and at rest, with SSL/TLS securing every connection.
What is 3D Secure 2.0 and why does it matter?
3D Secure 2.0 is an additional authentication layer that verifies the cardholder's identity at the time of payment. Treps supports 3D Secure 2.0 for all banks, preventing unauthorized transactions and minimizing chargeback risk.
Do you offer fraud protection?
Yes. The Treps platform detects suspicious transaction patterns in real time. Error code management, limit controls and bank-based routing rules automatically block fraudulent attempts.
Are you GDPR and KVKK compliant?
Yes. Treps operates in full compliance with GDPR and Turkey's Personal Data Protection Law (KVKK / Law No. 6698). Personal and financial data is processed only for the duration required by legal obligations.
Do you use SSL encryption?
Yes. All Treps payment pages and API communications are encrypted with TLS 1.2/1.3, preventing data interception by third parties during transmission.