Skip to main content

Credit Card Skimming Prevention and Physical Terminal Security Guide

Mandatory security practices and daily physical inspection protocols for school point-of-sale card readers and payment terminals.

Schools that accept in-person credit card payments (using Online Mobile Swipe - OMS or USB card readers) must adhere to strict Payment Card Industry (PCI) data security guidelines to protect cardholder information from physical tampering and skimming devices.

What is Card Skimming?

Skimming occurs when malicious individuals place fraudulent hardware overlays or intercept devices on physical card readers to steal magnetic stripe and chip data as cards are swiped or inserted.

Daily Physical Inspection Protocol

School staff who operate card swipe terminals at athletic gates, book fairs, or school cafeterias must perform a quick physical inspection before each use:

  1. Inspect the Casing: Examine the reader for physical damage, loose plastic covers, mismatched colors, or sticky tape/glue residue around the card slot.

  2. Check Cable Connections: Ensure cables run directly to the school computer or mobile terminal with no inline splitters or unauthorized hardware attachments.

  3. Perform the "Wiggle Test": Gently tug on the card slot bezel. Authentic reader components are solidly manufactured; loose or shifting parts indicate a fraudulent overlay.

  4. Verify Serial Numbers: Check the manufacturer serial number label on the back of the device against the school's master asset inventory log.

Storage and Incident Reporting

  • Secure Storage: When not in active use at an event, all card readers must be locked inside a secure office safe or locked cabinet. Never leave terminals unattended on open counters.

  • Reporting Suspected Tampering: If a card reader shows any signs of tampering or damage, immediately remove it from service, disconnect it from power, and notify your district IT Security team and Edlio Support.

Did this answer your question?