<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Coleman Web site dropped promise not to store donors&#8217; credit card data</title>
	<atom:link href="http://minnesotaindependent.com/28982/coleman-web-site-dropped-promise-not-to-store-credit-card-data/feed" rel="self" type="application/rss+xml" />
	<link>http://minnesotaindependent.com/28982/coleman-web-site-dropped-promise-not-to-store-credit-card-data</link>
	<description>News. Politics. Media.</description>
	<lastBuildDate>Wed, 30 Nov 2011 23:48:28 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.1</generator>
	<item>
		<title>By: Patti Murphy</title>
		<link>http://minnesotaindependent.com/28982/coleman-web-site-dropped-promise-not-to-store-credit-card-data/comment-page-1#comment-26920</link>
		<dc:creator>Patti Murphy</dc:creator>
		<pubDate>Sun, 15 Mar 2009 15:02:04 +0000</pubDate>
		<guid isPermaLink="false">http://minnesotaindependent.com/?p=28982#comment-26920</guid>
		<description>It would seem to me that the bigger story a lot of folks are missing is the fact that the Coleman campaign was in violation of Payment Card Industry (PCI) Data Security Standards (DSS) which specifically require any Web site collecting credit card data engage in specific practices to protect cardholder information.</description>
		<content:encoded><![CDATA[<p>It would seem to me that the bigger story a lot of folks are missing is the fact that the Coleman campaign was in violation of Payment Card Industry (PCI) Data Security Standards (DSS) which specifically require any Web site collecting credit card data engage in specific practices to protect cardholder information.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Minnesota Central</title>
		<link>http://minnesotaindependent.com/28982/coleman-web-site-dropped-promise-not-to-store-credit-card-data/comment-page-1#comment-26887</link>
		<dc:creator>Minnesota Central</dc:creator>
		<pubDate>Sat, 14 Mar 2009 18:42:39 +0000</pubDate>
		<guid isPermaLink="false">http://minnesotaindependent.com/?p=28982#comment-26887</guid>
		<description>Let’s ignore the Coleman instance for a second and consider the potentially bigger problem. 
There are some important questions that need to be asked :
What company did Coleman hire to collect his donations ? 
Did that company perform similar work for others ? 
If so, does that company maintain “illegal” information on their databases ?

According to WikiLeak, the information that was contained on Coleman’s files included : Unique ID number, first name, last name, city, state, zip, phone, e-mail, employer, title, type of credit card used, name on card, last four of credit card, CVV2 value of the card, donation amount, authorization code from credit card processor, AVS (address verification) match, and a timestamp. 
There is a violation of Minnesota Statute 325E.64 by retaining the card security code data. 

If the company maintained this information for the Coleman campaign, was the same information maintained by other campaigns ? 
The Coleman incident may have exposed a problem that every political campaign needs to address. Proactively, every campaign that collected monies through credit cards needs to perform an internal investigation and issue a press release if illegal information was maintained. 

There is no reason for waiting for the FBI, Secret Service, FEC or MN Attorney General to investigate … campaigns need to be forthright and transparent.</description>
		<content:encoded><![CDATA[<p>Let’s ignore the Coleman instance for a second and consider the potentially bigger problem.<br />
There are some important questions that need to be asked :<br />
What company did Coleman hire to collect his donations ?<br />
Did that company perform similar work for others ?<br />
If so, does that company maintain “illegal” information on their databases ?</p>
<p>According to WikiLeak, the information that was contained on Coleman’s files included : Unique ID number, first name, last name, city, state, zip, phone, e-mail, employer, title, type of credit card used, name on card, last four of credit card, CVV2 value of the card, donation amount, authorization code from credit card processor, AVS (address verification) match, and a timestamp.<br />
There is a violation of Minnesota Statute 325E.64 by retaining the card security code data. </p>
<p>If the company maintained this information for the Coleman campaign, was the same information maintained by other campaigns ?<br />
The Coleman incident may have exposed a problem that every political campaign needs to address. Proactively, every campaign that collected monies through credit cards needs to perform an internal investigation and issue a press release if illegal information was maintained. </p>
<p>There is no reason for waiting for the FBI, Secret Service, FEC or MN Attorney General to investigate … campaigns need to be forthright and transparent.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: News Day: Coleman campaign circus / &#8220;Don&#8217;t do anything embarrassing&#8221; / Water bill / Recount and more &#171; Mary Turck</title>
		<link>http://minnesotaindependent.com/28982/coleman-web-site-dropped-promise-not-to-store-credit-card-data/comment-page-1#comment-26810</link>
		<dc:creator>News Day: Coleman campaign circus / &#8220;Don&#8217;t do anything embarrassing&#8221; / Water bill / Recount and more &#171; Mary Turck</dc:creator>
		<pubDate>Fri, 13 Mar 2009 15:15:27 +0000</pubDate>
		<guid isPermaLink="false">http://minnesotaindependent.com/?p=28982#comment-26810</guid>
		<description>[...] card numbers and security codes out on the internet for anyone to scoop up; the Coleman campaign violated its own promise to donors not to store their credit card numbers; the Coleman campaign probably violated MN law by not [...]</description>
		<content:encoded><![CDATA[<p>[...] card numbers and security codes out on the internet for anyone to scoop up; the Coleman campaign violated its own promise to donors not to store their credit card numbers; the Coleman campaign probably violated MN law by not [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Anonymous</title>
		<link>http://minnesotaindependent.com/28982/coleman-web-site-dropped-promise-not-to-store-credit-card-data/comment-page-1#comment-26779</link>
		<dc:creator>Anonymous</dc:creator>
		<pubDate>Fri, 13 Mar 2009 03:03:14 +0000</pubDate>
		<guid isPermaLink="false">http://minnesotaindependent.com/?p=28982#comment-26779</guid>
		<description>Looks like someone got started with just that: http://file.sunshinepress.org:54445/coleman-webster-ag-2009.pdf</description>
		<content:encoded><![CDATA[<p>Looks like someone got started with just that: <a href="http://file.sunshinepress.org:54445/coleman-webster-ag-2009.pdf" rel="nofollow">http://file.sunshinepress.org:54445/coleman-webster-ag-2009.pdf</a></p>
]]></content:encoded>
	</item>
	<item>
		<title>By: eb</title>
		<link>http://minnesotaindependent.com/28982/coleman-web-site-dropped-promise-not-to-store-credit-card-data/comment-page-1#comment-26776</link>
		<dc:creator>eb</dc:creator>
		<pubDate>Fri, 13 Mar 2009 01:57:44 +0000</pubDate>
		<guid isPermaLink="false">http://minnesotaindependent.com/?p=28982#comment-26776</guid>
		<description>The only way to get the FTC involved is for someone to step up and file a complaint.</description>
		<content:encoded><![CDATA[<p>The only way to get the FTC involved is for someone to step up and file a complaint.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Anonymous</title>
		<link>http://minnesotaindependent.com/28982/coleman-web-site-dropped-promise-not-to-store-credit-card-data/comment-page-1#comment-26769</link>
		<dc:creator>Anonymous</dc:creator>
		<pubDate>Thu, 12 Mar 2009 23:27:36 +0000</pubDate>
		<guid isPermaLink="false">http://minnesotaindependent.com/?p=28982#comment-26769</guid>
		<description>The FTC might want to have a word with Normie. He appears to have been engaged in unfair and deceptive marketing practices per Title V of the FTC Act.</description>
		<content:encoded><![CDATA[<p>The FTC might want to have a word with Normie. He appears to have been engaged in unfair and deceptive marketing practices per Title V of the FTC Act.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: mill</title>
		<link>http://minnesotaindependent.com/28982/coleman-web-site-dropped-promise-not-to-store-credit-card-data/comment-page-1#comment-26766</link>
		<dc:creator>mill</dc:creator>
		<pubDate>Thu, 12 Mar 2009 23:11:09 +0000</pubDate>
		<guid isPermaLink="false">http://minnesotaindependent.com/?p=28982#comment-26766</guid>
		<description>What good is a policy if it&#039;s not followed?  Reminds me of the &quot;we don&#039;t torture&quot; Bush administration.</description>
		<content:encoded><![CDATA[<p>What good is a policy if it&#8217;s not followed?  Reminds me of the &#8220;we don&#8217;t torture&#8221; Bush administration.</p>
]]></content:encoded>
	</item>
</channel>
</rss>

