Lame Credit Card Zip Code Security
Why is it that all gas stations seem to require your zip code to validate your credit card at the pump?
Requiring me to type my zip code is a poor user experience and extremely poor security. According to the U.S. Census Bureau the United States only has around 40,000 zip codes. Zip codes are not only finite they are trivial to guess. A thief with any intelligence at all will know the relative location he/she accrued the credit card. Narrowing the zip codes to less than 10 because the average American only commutes 16 miles. More than likely the thief will steal the whole wallet or purse and already have the zip code off the ID. A five digit PIN would offer higher security by providing 100,000 possible combinations and making it impossible to guess by geographical location.

3 Responses to Lame Credit Card Zip Code Security
Leave a Reply Cancel reply
My Twitter
- Hanging out at a lake cabin with friends for the day. 21 hours ago
- P.S.A just because your riding a bike doesn't mean you need skin tight short and shirt. Your not racing right now. 2012/05/19
- @smarkowitz Thanks for following. 2012/05/19
- RT @phpfog: Because you asked for it.... PHP Fog now has cron support. http://t.co/sEZMDkAv Nice... Keep up the good work! 2012/05/18
- Does anyone else find it #ironic that Facebook is buy a company called Karma? http://t.co/Gjdi8Zds 2012/05/18
- Any glimmer of hope you had about your Facebook information being private died today. Facebook is now legal obligated maximize profits. 2012/05/18
- RT @CoffeeScript: Kicksend rewrote their entire web app in one month with a faster, leaner code base featuring CoffeeScript and Backbone ... 2012/05/18
- Glad to see normal investors not getting screwed by driving up $FB prices. It's already overvalued let it stabilize. 2012/05/18
- Spec changes mid sprint are always fun. 2012/05/17
- RT @newsycombinator: CSS-Only Clickjacking http://t.co/HI1Clhlo 2012/05/16
Archives
- December 2011
- October 2011
- August 2011
- June 2011
- April 2011
- March 2011
- February 2011
- December 2010
- November 2010
- October 2010
- August 2010
- June 2010
- May 2010
- April 2010
- March 2010
- February 2010
- January 2010
- December 2009
- November 2009
- October 2009
- September 2009
- August 2009
- July 2009
- June 2009
- May 2009
- April 2009
- March 2009
- February 2009
- January 2009
- December 2008
- November 2008
- September 2007
- July 2007
- June 2007
- April 2007
- March 2007
- February 2007
- January 2007
- December 2006
- November 2006







Ever since I moved to Canada I realised how far behind the US banks are. Our debit cards REQUIRE a PIN (four digit or otherwise, but four-digit is best if you’re going to travel to the US), they can’t just be swiped as a Visa or Mastercard. Most of our credit cards (it’s being phased in) also have a chip so instead of swiping them, you stick them in the machine that reads the chip. When a company has this type of reader a PIN is also required to use your credit card. I actually ran into a restaurant in Scotland two years ago that didn’t even accept “regular” credit cards (ones without the chip).
It’s also annoying for me in the states if I want to use a Canadian card and it asks for a zip code . . . ours are six digits and have three numbers and three letters so it’s kind of not possible. Instead I have to go into the gas station and get a five digit code from them and then go back out. It’s ridiculously complicated. As you say, having a PIN would make a LOT more sense.
I think this was a very interesting post thanks for writing it!
Pretty nice post. I just stumbled upon your blog and wanted to say that I have really enjoyed browsing your blog posts. In any case I’ll be subscribing to your feed and I hope you write again soon!