Credit Card Center Advertiser Disclosure

Reply
Valued Contributor
Posts: 1,815
Registered: ‎03-03-2015

Credit card data breach at Chipotle

https://consumerist.com/2017/04/26/chipotle-reveals-payment-system-data-breach-will-also-start-selli...

 

I noticed several months ago that Chipotle was still not PCI compliant, when I inquired about the lack of Apple and Android Pay.  

 

They're not using tokenized transactions with chip and signature, or external card readers that tokenize mag stripe-read card numbers.

 

The article mentions that they have taken several steps to secure their systems, but I don't think they're finished. I was just there last week. They're using the same old POS systems and no tokenized card acceptance methods. I would use cash there until they do. 

Super Contributor
Posts: 8,760
Registered: ‎10-03-2008
0

Re: Credit card data breach at Chipotle

DeeBee78 great catch and write up! Glad we don't have one of their stores around here because they are just plain stupid!!!
Starting Score: 848
Current Score: 826
Goal Score: 850


Take the myFICO Fitness Challenge
Moderator
Posts: 17,383
Registered: ‎12-30-2011

Re: Credit card data breach at Chipotle

Sigh.

 

I still own Chipotle stock, they just can't get out of their own way.  Then again if this depresses it again, might go pick up some more Smiley LOL

Starting Score: EQ 5 561, TU 98 567, EX 2 599 (12/30/11)
Current Score: EQ 5 688, TU 4 758, EX 2 703, EQ 8 728, TU 8 762, EX 8 739 (6/12/17)
Goal Score:    EQ 5 750, TU 4 750, EX 2 750, EQ 8 800, TU 8 Blah, EX 8 800 (01/01/18)


Take the myFICO Fitness Challenge
Established Contributor
Posts: 1,078
Registered: ‎02-07-2017
0

Re: Credit card data breach at Chipotle

Good thing that I used cash the last time I went to Chipotle; I'm not sure whether my visit was in the period reported in the article, or before. At any rate, even if I don't use actual physical cash, I almost always use my debit card when visiting a restaurant (since my bill for a single person generally doesn't go higher than $15-$20 excluding tip, I don't really bother to use a credit card in those circumstances).

Rebuilding credit since 12/14 Ch7 BK discharge. FICO 6/28/17:TU 646/EX 680/EQ 677 FICO 8 or 693 NG 2, VS 3.0 7/20/17: TU 705/EX 666/EQ 691. $800 Amazon Prime Store Card, $951 Cap One secured Platinum MC, $1200 Walmart Store Card, $2000 Apple FCU Platinum Visa, $3000 Penfed Power Cash Rewards Visa, $3000 Cap One Quicksilver MC, $3300 Discover It, $4000 Overstock Store Card, $10k PenFed used car loan, $5k Navient student loan. In the garden as of 7/2/17 AND THIS TIME I REALLY MEAN IT!!! (unless I get a preapproval I can't refuse...)
Established Contributor
Posts: 749
Registered: ‎11-15-2014
0

Re: Credit card data breach at Chipotle


DeeBee78 wrote:

https://consumerist.com/2017/04/26/chipotle-reveals-payment-system-data-breach-will-also-start-selli...

 

I noticed several months ago that Chipotle was still not PCI compliant, when I inquired about the lack of Apple and Android Pay.  

 

They're not using tokenized transactions with chip and signature, or external card readers that tokenize mag stripe-read card numbers.

 

The article mentions that they have taken several steps to secure their systems, but I don't think they're finished. I was just there last week. They're using the same old POS systems and no tokenized card acceptance methods. I would use cash there until they do. 


You can be PCI compliant without EMV and tokenization. (For now, at least.)

 

Having the terminal be separate from the POS does help with security, however.

Established Member
Posts: 42
Registered: ‎04-14-2017
0

Re: Credit card data breach at Chipotle

Interesting. THanks for the tip

Highlighted
New Contributor
Posts: 76
Registered: ‎05-20-2015
0

Re: Credit card data breach at Chipotle

My secured card company sent me a letter today saying my card could have been compromised, and we were at Chipitle between the dates listed so they canceled my card and are sending me a new one 😒 thanx chipotle👌
5/24/17- FICO EQ 584 TU 581 EX 563

Discover Secured:$200 First Progress: $400 Credit One: $300
Victoria's Secret: $250 Express: $250 Children's Place: $250
Fingerhut: $230

Forums posts are not provided or commissioned by FICO. Forums posts have not been reviewed, approved or otherwise endorsed by FICO. It is not FICO's responsibility to ensure all posts and/or questions are answered.

† Advertiser Disclosure: The listings that appear on myFICO are from companies from which myFICO receives compensation, which may impact how and where products appear on myFICO (including, for example, the order in which they appear). myFICO does not review or include all companies or all available products.
‡ Credit cards for FICO Score ranges: The score ranges are guidelines based on internal myFICO analysis of actual applicant approvals, and having a FICO Score in a particular range does not guarantee you will be approved for credit cards recommended in that range. These ranges were not provided by any card issuer.

* For complete information, see the terms and conditions on the credit card issuer’s website. Once you click apply for this card, you will be directed to the issuer’s website where you may review the terms and conditions of the card before applying. While myFICO always strives to present the most accurate information, we show a summary to help you choose a product, not the full legal terms - and before applying you should understand the full terms of products as stated by the issuer itself.

Copyright ©2001-2015 Fair Isaac Corporation. All rights reserved.   | Terms of Use | Privacy Policy | Sitemap

IMPORTANT INFORMATION: All FICO® Score products made available on myFICO.com include a FICO® Score 8, along with additional FICO® Score versions. Your lender or insurer may use a different FICO® Score than the versions you receive from myFICO, or another type of credit score altogether. Learn more

FICO, myFICO, Score Watch, The score lenders use, and The Score That Matters are trademarks or registered trademarks of Fair Isaac Corporation. Equifax Credit Report is a trademark of Equifax, Inc. and its affiliated companies. Many factors affect your FICO Score and the interest rates you may receive. Fair Isaac is not a credit repair organization as defined under federal or state law, including the Credit Repair Organizations Act. Fair Isaac does not provide "credit repair" services or advice or assistance regarding "rebuilding" or "improving" your credit record, credit history or credit rating. FTC's website on credit.