In scope of complianceIf you choose to use the StringToken to store card details—whether the card number (PAN), the CVV, or the full card details—when retrieving the data stored behind a token, your system is then exposed to the raw card details and as such is in scope of PCI compliance.The same applies to any other type of sensitive data—by retrieving the data, your system is then in scope of the relevant compliance.If you are unsure whether you should use this method, please reach out to our team and we would be happy to review your use case and explain your options.