Back to Payments Glossary
Security & Compliance

Tokenisation

A security technique that replaces card details with a meaningless 'token', so real card numbers are never stored by your business.

What It Is

Tokenisation is a security technique that replaces card details with a meaningless 'token', so real card numbers are never stored by your business.

The token stands in for the card number but is worthless if it ever falls into the wrong hands.

How It Works

At payment, the card number is swapped for a token that can be used for repeat or recurring payments but is useless to a thief.

The real card data is held securely by the payment provider, never on your own systems.

When It's Necessary

Important for online, subscription and repeat-billing businesses that need to take payment again without storing card data.

Anything involving saved cards or recurring charges benefits from tokenisation.

Business Impact

Reduces your PCI scope and fraud risk while still allowing smooth repeat payments for loyal customers.

It lets you offer convenient repeat payments without taking on the burden of storing card numbers.

Quick Summary

  • What It Is
  • How It Works
  • When It's Necessary
  • Business Impact

Questions About Tokenisation?

Book a free rate review and we'll read your statement, explain exactly what you're paying, and show you where you could save — in plain English.