Chargeback Management Solution Justt Is Now PCI DSS Compliant
Justt.ai, an AI-native platform for enterprise chargeback management, announced last week that it had achieved PCI DSS Level 1 compliance, the highest certification tier under the Payment Card Industry Data Security Standard. In addition, Justt reported that it had also achieved compliance with ISO/IEC 42001, the world’s first international standard for artificial intelligence management systems (AIMS).
According to the company, Level 1 status enables its platform to access certain PSP and acquirer systems that require the highest level of security, in order to automate data extraction on behalf of merchants and PSP/acquirer partners.
PCI DSS Compliance Enables Better Data Access
“By becoming PCI DSS Level 1 certified, we can securely access the data we need directly from those systems, rather than asking merchants to provide it manually, or in some cases, being unable to obtain it at all,” Justt co-founder and Chief Risk Officer Roenen Ben-Ami told Fraudbeat in an interview. “This gives us access to richer transaction data that wasn’t previously available for building dispute evidence, allowing us to create even more tailored and effective responses [for chargeback representments] while handling the data securely and in compliance with PCI requirements.”
ISO 42001 Confirms Justt’s Responsible Use of AI
Justt stated in a press release that ISO/IEC 42001 certification provided it with a framework to responsibly govern, develop, and use AI, managing risks like bias and security. The company said that passing the ISO 42001 certification review process provided independent validation that Justt meets global standards for responsible AI as the company continues to scale.
“Getting ISO 42001 was relatively quick and easy for us because we had most of the controls, including guardrails, tests and human-in-the-loop processes (when needed) implemented before the certification,” said Justt Chief Technology Officer Shahar Tal. “The certification simply helped us to formalize and audit them to make sure they were correctly implemented.”
Justt’s pursuit of PCI DSS compliance may also hint at company plans to develop further products that require handling credit card data. “It also opens the door to further our product development and innovation,” said Tal in the press release.
(Full disclosure: The author of this article is a current employee of Justt.)




















