Security around the clock.
We monitor every transaction 24/7 to help prevent against fraud, email phishing and identity theft. Every transaction is heavily guarded behind our next-level encryption. If something seems suspicious, our dedicated team of security specialists is immediately on it to help protect you from fraudulent transactions. And remember, we never ask for any sensitive information from you in an email.
Your safety is our priority.
No matter where you shop, our security is always the same. So buy with peace of mind from thousands of online stores around the globe. The world is yours.
Your information is secured.
When you pay with PayPal, your financial information is never shared with the seller, and you can pay using only your email address and password.
1. PayPal security key.
Using the PayPal security key is optional, but it’s a highly recommended way to keep your account secure. The PayPal security key is a two-step authentication that sends you a one-time personal identification number (PIN), which is unique for each login session. You use this temporary code, and your password, to log in to your PayPal account.
2. Data encryption.
End-to-end encryption is an important element in helping keep your data and PayPal transactions secure. Our team of security and compliance experts is dedicated to educating customers on industry standards, and implementing methods like:
- Secure HTTPS connections and strong TLS configurations. When you register or log into PayPal from your computer or mobile device, we make sure it’s a secure HTTPS connection (HSTS), and a strong TLS configuration*. Strong TLS configurations are the current industry standard for trusted communication channels and allow your information to transmit across the internet in a secure manner. And, only allowing HTTPS connections helps to reduce your susceptibility to some passive and active attacks.
- Key pinning. We implement key pinning when you access PayPal via an IOS or Android app. When your mobile device establishes a TLS connection, key pinning ensures it connects to a true PayPal server, instead of someone posing us.
- Data protection compliance. We comply with stringent data protection requirements, while in transit and at rest, such as PCI-DSS. In addition to industry and regulatory encryption requirements, PayPal’s Information Security Policies and Controls are reviewed by independent third parties to the following industry standards and guidelines: American Institute of Certified Public Accountants SSAE16 SOC1, AT101 SOC2, Sarbanes-Oxley.
3. Email confirmations.
Anytime you send or receive a PayPal payment, we’ll send you an email to confirm the transaction. If you ever receive a confirmation email for a transaction you didn’t make, let us know right away, and we’ll launch an investigation.
Our security measures help protect your information, but you should also take some steps to beef up security. There are lots of ways you can be proactive about protecting yourself from the threat of malicious software.