Skip to content
  • There are no suggestions because the search field is empty.

rezSafe: Secure Credit Card Handling in rezStream Cloud

If you've opted not to utilize fully integrated credit card processing within rezStream Cloud, you can still securely collect, enter, and view credit card information using rezSafe regardless of your subscription level.

When not using integrated credit card processing, credit cards will automatically be collected and stored in rezSafe for booking engine and OTA (rezStream Channels) reservations. Credit cards can also be manually entered within rezStream Cloud for later viewing. 

rezStream Cloud was specifically designed with your property's credit card PCI compliance security in mind. We've implemented PCI-compliant tokenization, encrypting, and storing of credit card data to prevent hackers from breaching your business and accessing credit card information. This ensures a secure method for retrieving guests' credit card data for both online and offline reservations. 

Here are some benefits of using rezSafe: 

  • Easier Access: Credit card details can be conveniently viewed within the PMS.  
  • Transferable Tokens: Should you choose to switch to integrated credit card processing, tokens stored in rezSafe can be seamlessly migrated to rezStream Payments or Shift4. 
  • Enhanced Security: Achieve PCI compliance without the hassle of extra steps. rezStream Cloud also maintains a history log of who accessed the card and when. 


Viewing Credit Card Details 

When using rezSafe, simply click "View" to access the card details. 

A screenshot of a credit card

Description automatically generated

You can also access all guest credit card details by looking up the contact in rezStream Cloud under the People tab. 



Upon clicking "View," you'll experience a streamlined process. By default, you'll be prompted to re-enter your password. However, rezStream Cloud supports setting up an Authenticator App for added security. After clicking "View," you'll be prompted to choose one of these options based on your preferences. 

A screenshot of a login

Description automatically generated

Upon successful validation of your credentials, you'll gain access to view the card data.  

A screenshot of a credit card

Description automatically generated

The CVV code can only be displayed once for security reasons. If you click the "Show" button, the CVV code will briefly appear and then be promptly deleted. If you require access to the credit card details again, you'll need to reach out to the guest directly to collect the information. 

As mentioned earlier, you can also access a list of every Cloud PMS user who has viewed the credit card, along with information about their browser and location, by clicking the "View History" button in the upper right corner. 

A screenshot of a computer

Description automatically generatedAdding Credit Card Details 

If you need to add new credit card details, rezStream Cloud supports those changes in several ways including: 

From Occupancy Map Tab: 


From People Tab: 


From Reservations Tab: 


You can also add credit card details to a reservation by simply clicking on the "Add" button under the credit card section. 

Credit Card Storage & Automatic Deletion

To comply with PCI rules and regulations, credit card information stored in rezSafe as part of a reservation is automatically and completely deleted seven days after the reservation’s departure date. Once deleted, the full card information cannot be retrieved and will need to be collected from the guest again if needed.

You may notice that some guest profiles under the People tab continue to display credit card information beyond seven days after checkout. How the card is handled depends on whether those credit card details were used for the reservation.

If the stored credit card was used for the reservation, the full credit card details will be removed from both the Guest and Reservation levels seven days after checkout. Basic information may still remain for reference, including the card type, last four digits, expiration date, and last-used date, but the card will be marked as EXPIRED and the full card details will no longer be accessible.

The payment itself will still remain recorded on the invoice. This allows you to see that a credit card payment was made, along with information such as the payment date and amount. However, the sensitive credit card details associated with that payment will no longer be available once they have been removed from rezSafe.

If a credit card was saved separately to the guest’s profile and was not used or tied to the reservation, it is treated separately and is not affected by the reservation’s seven-day automatic deletion process.

It’s important to keep this distinction in mind when working with repeat guests or company accounts:

  • Credit card used for a reservation → Full card details are automatically deleted seven days after departure from both the Guest and Reservation levels. The payment transaction remains recorded on the invoice for reference.
  • Credit card saved separately to a guest/company profile → Remains associated with the profile as long as it was not used or tied to the reservation.