PA-DSS certification costs over 40K to get. Any ecommerce application that is distrubuted that handles CC transactions has to get this certification.
Some of the rules are 'code reviews', which means you can't be a 1-person startup since you need others in the company to be reviewing code (this is just 1 of MANY requirements ofcourse).
Is this a losing battle for a 1-man show or do you think there is a way to dance around this somehow?
PA-DSS I believe was suppose to be inforced this year July, but has been delayed for some reason.