JRR shop info etc
-
- KVRAF
- 2048 posts since 13 May, 2004 from Germany
Watching all of this over the last months I have to say that this is the most unprofessional handling of a shop with customers data I have ever experienced
- KVRAF
- 3639 posts since 21 Nov, 2015
I also hope its still fine somehow in the end. Actually, just ordered something like 2 Days ago.
You can be creative in any right place on Earth, and not only in the wealthiest cities. Bring the world feelings from everywhere, and not only feelings of capitalistic or jail environment.
― Aleksey Vaneev
https://linuxdaw.org
― Aleksey Vaneev
https://linuxdaw.org
-
- KVRist
- 111 posts since 13 Sep, 2013 from Berlin, Germany
I am too redirected to a Chinese sales platform...
- Banned
- 88 posts since 20 Sep, 2020
i am a customer of jrrshop since a long long time, uncle E have always been professiona and responsive, the technical problem they have are the 1 since i made my first buy.jrrshop is not a buggy shop.all these technical trouble will not make me stop me to purchase plugin from them.rasmusklump wrote: Sat Oct 03, 2020 7:04 pm Watching all of this over the last months I have to say that this is the most unprofessional handling of a shop with customers data I have ever experienced
- KVRAF
- 20666 posts since 22 Nov, 2000 from Southern California
We never collect or store any credit card information. Even in the past when we accepted direct credit card payments, you were redirected directly to the credit card processor's interface and your information never touched our site. This is also true for PayPal payments, by the time you enter any passwords or payment information, you are completely inside of PayPal and none of your information is being communicated in any way to our site.rasmusklump wrote: Sat Oct 03, 2020 6:59 pm I wish I had never bought there anything. I suppose my credit card details are now all over the net
I have shut our site down until we get this fixed.
- Banned
- 88 posts since 20 Sep, 2020
good luck.Uncle E wrote: Sat Oct 03, 2020 7:36 pmWe never collect or store any credit card information. Even in the past when we accepted direct credit card payments, you were redirected directly to the credit card processor's interface and your information never touched our site. This is also true for PayPal payments, by the time you enter any passwords or payment information, you are completely inside of PayPal and none of your information is being communicated in any way to our site.rasmusklump wrote: Sat Oct 03, 2020 6:59 pm I wish I had never bought there anything. I suppose my credit card details are now all over the net
I have shut our site down until we get this fixed.
- KVRAF
- 5912 posts since 17 Aug, 2004 from Berlin, Germany
If I try to open a subpage, there is no redirection. So it seems someone has modified the index page (with added Javascript).
There are always idiots who seem to have fun testing random passwords on the root account via SSH and try to get access to the server via SSH to install spam...
(therefore it is strongly recommended to use key files and disable SSH root access).
But maybe it's something completely different with the shop system or a customized CMS.
By the way, there is hardly anybody who takes over the payment processing completely by himself. Most shops use payment providers, in the simplest case Paypal. So the data is not on the server, but is handled by the external provider... everything should be secure and there are no credit card data on the server
There are always idiots who seem to have fun testing random passwords on the root account via SSH and try to get access to the server via SSH to install spam...
(therefore it is strongly recommended to use key files and disable SSH root access).
But maybe it's something completely different with the shop system or a customized CMS.
By the way, there is hardly anybody who takes over the payment processing completely by himself. Most shops use payment providers, in the simplest case Paypal. So the data is not on the server, but is handled by the external provider... everything should be secure and there are no credit card data on the server
| Links-
- KVRist
- 482 posts since 10 Mar, 2013
-
- KVRian
- 1030 posts since 26 Feb, 2018
For everyone: always buy things via Paypal or another third party payment handling account. That way your payment info is not shared with the website, which means you are safer and the website is also safer because there's less incentive for hackers to hack a website that wouldn't have people's payment information.
If you used Paypal to buy from the JRR website, then your credit card info was never stored in the JRR website.
If you used Paypal to buy from the JRR website, then your credit card info was never stored in the JRR website.
- KVRAF
- 19783 posts since 16 Sep, 2001 from Las Vegas,USA
jochicago wrote: Sun Oct 04, 2020 12:06 am If you used Paypal to buy from the JRR website, then your credit card info was never stored in the JRR website.
Ok let's cut Uncle E some slack. He's always been a solid contributor here and JRR Shop has always been a safe place to shop.Uncle E wrote: Sat Oct 03, 2020 7:36 pm We never collect or store any credit card information. Even in the past when we accepted direct credit card payments, you were redirected directly to the credit card processor's interface and your information never touched our site. This is also true for PayPal payments, by the time you enter any passwords or payment information, you are completely inside of PayPal and none of your information is being communicated in any way to our site.
I think he's the victim and not the bad guy in this whole story. Let's keep cool and see what happens going forward.
None are so hopelessly enslaved as those who falsely believe they are free. Johann Wolfgang von Goethe
-
- KVRAF
- 35671 posts since 11 Apr, 2010 from Germany
I think the same holds true for about every third party payment service out there.jochicago wrote: Sun Oct 04, 2020 12:06 am For everyone: always buy things via Paypal or another third party payment handling account. That way your payment info is not shared with the website, which means you are safer and the website is also safer because there's less incentive for hackers to hack a website that wouldn't have people's payment information.
If you used Paypal to buy from the JRR website, then your credit card info was never stored in the JRR website.
A problematic thing is when you "save your payment info in your account". Which means that you authorize a online store to use Paypal without having to authorize the payment with your Paypal login credential. I'd really not recommend doing that, because, if someone takes over your account on the store site, they can buy stuff with it. But, as far as I can see, JRR Shop doesn't allow that anyway.
-
- KVRist
- 481 posts since 24 Dec, 2016
Its not just payment information, but personal information (names, addresses, phones, etc) as well. Agree that he is a nice guy, but no way I'm ever buying from JRRShop again.
-
- KVRAF
- 2812 posts since 26 Jul, 2015 from Philadelphia
If I would stop buying from companies who lost my personal information, I would have to start raising my own chicken and sew my own shirts. This is the world we live in.husker37 wrote: Sun Oct 04, 2020 12:48 am Its not just payment information, but personal information (names, addresses, phones, etc) as well. Agree that he is a nice guy, but no way I'm ever buying from JRRShop again.
Follow me on Youtube for videos on spatial and immersive audio production.
-
- KVRist
- 481 posts since 24 Dec, 2016
Agree, it is the world we live in. But JRRShop has been up and down for a couple of years - he's had plenty of opportunities to make corrections. So no excuse in my book. Too many other options these days who don't have these issues.mgw38 wrote: Sun Oct 04, 2020 12:57 amIf I would stop buying from companies who lost my personal information, I would have to start raising my own chicken and sew my own shirts. This is the world we live in.husker37 wrote: Sun Oct 04, 2020 12:48 am Its not just payment information, but personal information (names, addresses, phones, etc) as well. Agree that he is a nice guy, but no way I'm ever buying from JRRShop again.
- KVRAF
- 20666 posts since 22 Nov, 2000 from Southern California
Please try back when we launch the new site. It should be up next month.husker37 wrote: Sun Oct 04, 2020 12:48 am Its not just payment information, but personal information (names, addresses, phones, etc) as well. Agree that he is a nice guy, but no way I'm ever buying from JRRShop again.
