PCI-DSS Certification Information
Customers often inquire if the Lilitab Swipe product is "PCI certified". For a retail business, such certification is normally awarded to the entire system (everything that touches card data) and the surrounding processes. As such, a certification review is based upon numerous internal and external factors and certification is not typically awarded to individual pieces. Imagine a chain, made of many links. These links represent items such as servers, networks, storage systems, and security policies, as well as the Lilitab product. In a review process, each link is examined – and must pass – but it is the chain which is normally awarded the certification.
The Lilitab encrypted card swipe product is simply a “link in the system chain”, and is not an individually certified unit. That said, the Lilitab product should not obstruct an overall system PCI certification review - in fact, it may very well assist in your certification process by reducing the scope of a full PCI review.
The significant review points for the Lilitab encrypted swipe products are:
- Encryption occurs inside the reader unit at the time of swipe.
- Personally Identifiable Information (“PII”), and other raw data, is neither transmitted or stored within the Lilitab product.
- The reader unit utilizes industry standard encryption methodology (3DES) and dynamic keys (DUKPT).
- The reader unit interior is not accessible to normal physical traffic or customer handling,
- There is no ability to turn off or suspend the encryption process,
- Lilitab only utilizes industry approved and registered encryption keys.
The above points typically place Lilitab products as a "non-factor" for overall PCI consideration.
The component manufacturer states: "Other devices claim to encrypt data in the reader. The (reader) encrypts the data inside the read head, closest to the magnetic stripe and offers additional security layers with immediate tokenization of card data and …card authentication. This layered approach to security far exceeds the protection of encryption by itself, decreases the scope of PCI compliance, and reduces fraud".
Non-Encrypted Reader: The Lilitab non-encrypted reader properly reads and conveys card magnetic data – the difference is the data is transmitted in raw form. Non-encrypted card readers are therefore not PCI-DSS friendly, nor well suited in retail environments where customer credit card security is mandatory. However, if your card swipe commerce does not contain PII, or have other security requirements, then an unencrypted reader may well fit your business requirements. Additionally, a non-encrypted reader is recommended for testing and application development purposes.
For additional Lilitab product technical details, please contact the Lilitab support desk at (888) 705 0190 extension 2.
MEET THE TEAM
Adam Aronson - Founder/CEO
Adam has been designing self-service kiosks for over 25 years. He founded Lilitab to leverage tablet technology and help businesses implement digital touchpoints that increase revenue.
Adam oversees the company’s strategic, financial, and operational management.
Bryan Grziwok - VP of Product Development
For the past 20 years, Bryan has developed innovative products in both technical and leadership roles. Prior to joining Lilitab in 2012, he served as Director of Engineering at Speck Design in Palo Alto.
At Lilitab, Bryan oversees all aspects of product development.
Michael McCloud - VP of Business Development
Michael has more than 25 years of sales and executive management experience growing and scaling emerging technology companies. He previously served as VP of Sales and Marketing for friendlyway AG, a pioneer and leader in the kiosk and digital signage industry.
At Lilitab, Michael is responsible for new business development.
John Lindstrom - Director of Cloud Services
John has been hands-on in the tech industry for over 25 years, working with multi-tier, object-oriented distributed systems and bringing extensive experience in web-based technologies, along with a proven track record of delivering integrated solutions. Prior to joining Lilitab, he worked across a variety of sectors, including banking, health insurance, utilities, eDiscovery, finance, and consulting.
Jaryd Bernier-Green - IT Sales Manager
Jaryd Bernier-Green helps organizations implement scalable tablet and mobility solutions tailored to their operational needs. With previous experience in enterprise technology solutions, he brings a practical, customer-focused approach to solution design and deployment. Jaryd is passionate about building strong client partnerships and helping customers get the most from their technology investments.

