My question's regarding the Tokenized Payment Method which is a payment method offered for Book On Google.
In Tokenized Payment Since we are outsourcing the transactions and all processing of cardholder data completely to a validated PCI DSS compliant payment processor, are we still required to submit proof that we can safely manage customer payment data, meaning are PCI DSS Attestation of Compliance and passing a suitable third-party penetration test necessary? Because, like Paymentless Booking (Another payment method for BoG), we will not be receiving payment data from Google.
I Appreciate your answer or any guidance you may offer.
You can check this topic here: Payment options for Book on Google
https://support.google.com/hotelprices/answer/9865338