This article outlines the recommended procedures for securely handling customer credit card details when creating travel bookings within Bookit Lite. 


Why Credit Card Details Are Required

Travel bookings within Bookit Lite require a customer credit card so booking payments, cancellations, amendments, and refunds can be securely managed through the BookNZ Marketplace.


Credit card details entered into Bookit Lite are securely tokenised and stored within the payment system.


Recommended Credit Card Handling Practices

When processing travel bookings:

- Only enter credit card details directly into the secure payment fields within Bookit Lite.

- Never write down credit card numbers on paper, notebooks, or external documents.

- Never store credit card details in emails, spreadsheets, screenshots, or staff notes.

- Avoid reading credit card numbers aloud where other customers or staff may overhear.

- Ensure customers can see the payment screen where practical.

- Position screens so payment details are not visible to the public.

- Do not request customers email their credit card details.

- Do not save credit card details outside of Bookit Lite under any circumstances.


Shared or Public Devices

If using shared devices:

- Always log out when leaving the workstation.

- Do not allow browsers to save passwords or payment details.

- Only use trusted and secure internet connections.


Important Reminders

- Travel bookings can only be completed using a credit card.

- Credit card details are securely tokenised within Bookit Lite.

- Payment details must never be stored outside the system.

- Staff should always take reasonable steps to protect customer privacy during payment entry.