{"id":29082,"date":"2023-11-02T17:48:46","date_gmt":"2023-11-02T12:18:46","guid":{"rendered":"https:\/\/www.getastra.com\/blog\/?p=29082"},"modified":"2025-12-03T17:04:16","modified_gmt":"2025-12-03T11:34:16","slug":"pci-application-security-requirements","status":"publish","type":"post","link":"https:\/\/www.getastra.com\/blog\/compliance\/pci\/pci-application-security-requirements\/","title":{"rendered":"The 12 PCI Application Security Requirements: A Comprehensive Guide"},"content":{"rendered":"\n<p class=\"wp-block-paragraph\">PCI DSS (Payment Card Industry Data Security Standards) is a set of guidelines developed in 2004 by major credit card companies namely MasterCard, Visa, Discover, American Express, and JCB to ensure the security of cardholder data. Its primary objective is to reduce the risk of data breaches and fraud.&nbsp;<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">However, with the evolution and sophistication of cybercrime, PCI DSS has become a bare necessity. In fact, according to a recent report, there were 493+ million ransomware attacks globally in 2022 alone.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">This is where PCI application security requirements step in. <\/p>\n\n\n\n<h2 class=\"wp-block-heading\"><span class=\"ez-toc-section\" id=\"Action_Points\"><\/span>Action Points<span class=\"ez-toc-section-end\"><\/span><\/h2>\n\n\n\n<ol class=\"wp-block-list\">\n<li><a href=\"#understanding\">PCI DSS provides a globally applicable, comprehensive security framework with specific requirements to safeguard cardholder data, ensuring a clear path to compliance.<\/a><\/li>\n\n\n\n<li><a href=\"#non-compliance\">Non-compliance with PCI DSS incurs four primary consequences, including financial costs such as fines, investigation expenses, and additional security measures.<\/a><\/li>\n\n\n\n<li><a href=\"#requirements\">PCI application security mandates network security, encryption, access control, monitoring, and vulnerability management for cardholder data protection, and compliance.<\/a><\/li>\n<\/ol>\n\n\n\n<p class=\"wp-block-paragraph\">But before we jump in, let\u2019s understand PCI DSS a little better.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\" id=\"understanding\"><span class=\"ez-toc-section\" id=\"Understanding_PCI_DSS\"><\/span>Understanding PCI DSS<span class=\"ez-toc-section-end\"><\/span><\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">It provides a comprehensive framework for securing cardholder data and maintaining the integrity of payment card transactions. Here&#8217;s a deeper look at its role and applications in <a href=\"https:\/\/www.getastra.com\/blog\/cms\/pci-compliance-scan\/\">PCI compliance<\/a>:<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">1. Security Framework:<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">It serves as a comprehensive security framework that outlines specific technical and operational requirements to safeguard cardholder data. It sets precise standards for everything from network configurations to access controls to eliminate ambiguity and provides organizations with a clear path to compliance.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">2. Applicability:<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">PCI DSS applies to all entities that store, process, or transmit payment card data, which means it encompasses a broad spectrum of organizations, including merchants, service providers, and financial institutions. The global nature of this standard is incredibly valuable because it creates a universal language for data security.&nbsp;<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">3. Compliance Validation:&nbsp;<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">To achieve PCI compliance, organizations need to undergo periodic assessments and audits. These assessments help ensure uniform adoption of required security controls. Compliance validation methods include self-assessment questionnaires, external vulnerability scanning, and on-site audits by <a href=\"https:\/\/www.getastra.com\/blog\/compliance\/pci\/pci-qsa-companies\/\">Qualified Security Assessors (QSAs)<\/a>.<\/p>\n\n\n\n<figure class=\"wp-block-image size-full\"><a href=\"https:\/\/www.getastra.com\/contact-us\"><img loading=\"lazy\" decoding=\"async\" width=\"1408\" height=\"584\" src=\"\/cdn-cgi\/image\/quality=80,format=auto,onerror=redirect,metadata=none\/https:\/\/cdn-blog.getastra.com\/2025\/04\/a67257f0-astra-security-certificates.png\" alt=\"Astra Security Certificates\" class=\"wp-image-38550\"\/><\/a><\/figure>\n\n\n\n<h2 class=\"wp-block-heading\" id=\"noncompliance\"><span class=\"ez-toc-section\" id=\"What_are_the_Consequences_of_Non-Compliance\"><\/span>What are the Consequences of Non-Compliance?<span class=\"ez-toc-section-end\"><\/span><\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">The 4 primary consequences of non-compliance with <a href=\"https:\/\/listings.pcisecuritystandards.org\/documents\/PCI_DSS-QRG-v3_2_1.pdf\" target=\"_blank\" rel=\"noopener\">PCI DSS<\/a> web application security requirements include:<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">1. Financial Costs:<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">In addition to the fines imposed for non-compliance, you are also liable for compensations related to investigating the breach, notifying affected individuals, providing credit monitoring services, and potential litigation.&nbsp;<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Moreover, regaining compliance after a data breach comes with its own set of expenses including implementing security measures, hiring consultants, and undergoing additional assessments.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">2. Legal Liability:&nbsp;<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">Non-compliance often comes with a boatload of legal liabilities, including lawsuits and regulatory actions ranging from fines and decrees to revocation of, licenses to process card-based payments by the&nbsp; Federal Trade Commission (FTC).<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">3. Loss of Reputation:&nbsp;<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">Data breaches and non-compliance with PCI DSS web application security requirements can severely damage your reputation. Customers, vendors, and other business partners lose trust in your security measures, resulting in a loss of business and future revenue.&nbsp;<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">4. Loss of Payment Card Acceptance:&nbsp;<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">Your ability to accept certain brand cards like Visa, MasterCard, etc., may be revoked by the respective companies if you repeatedly fail to comply with PCI DSS. This leads to multiple complications in the processing of orders, vendor payouts, and all inflow-outflow of finances.<\/p>\n\n\n<style>\n.newctaWrapper{\n  background-color: #f8f2e4; \n  padding: 40px;\n  border-radius: 10px;\n  margin: 20px 0px; \n}\n\n.ctaHead{\n  display: flex;\n  align-items: center;\n  grid-gap: 1rem;\n}\n\n.newctaHeading{\n  font-size: 36px;\n  font-weight: 600;\n  line-height: 1.1;\n  margin-bottom: 0px;\n  color: #403F3E;\n}\n\n.spanBold{\n  color: #164DB3;\n  font-weight: 700;\n}\n\n.ctaOne{\n  text-decoration: none;\n  background-color: #2F76F8;\n  color: #ffffff!important;\n  padding: 10px 25px;\n  border-radius: 6px;\n  font-weight: 600;\n}\n\n.ctaOne:hover{\n  color:#fff;\n}\n\n.ctaTwo{\n  text-decoration: none;\n  background-color: #24BC94;\n  color: #ffffff!important;\n  padding: 10px 25px;\n  border-radius: 6px;\n  font-weight: 600;\n}\n\n.ctaTwo:hover{\n  color:#fff;\n}\n\n.ctaBody{\n  display: flex;\n  align-items: flex-end;\n  grid-gap: 1rem;\n  font-weight: 500;\n  color: #403F3E;\n}\n\n.ctoImg{\n  height: 344px; \n  width: 300px;\n}\n\n@media(max-width: 768px){\n\n}\n\n@media(max-width: 576px){\n  .ctaBody{\n    flex-direction: column;\n  }\n\n  .ctoImg{\n     display: none;\n  }\n}\n<\/style>\n\n<div class=\"newctaWrapper\">\n  <div class=\"ctaHead\">\n    <img loading=\"lazy\" decoding=\"async\" src=\"\/cdn-cgi\/image\/quality=80,format=auto,onerror=redirect,metadata=none\/https:\/\/cdn-blog.getastra.com\/2024\/08\/ceb80994-shield.png\" height=\"74\" width=\"70\" alt=\"shield\" \/>\n    <p class=\"newctaHeading\">Why is Astra Vulnerability Scanner the Best Scanner?\n\n<\/p>\n  <\/div>\n\n  <div class=\"ctaBody\">\n   <div>\n    <ul style=\"margin: 40px 0px 40px 20px;\">\n      <li>We\u2019re the only company that\u00a0<span class=\"spanBold\">combines automated &#038; manual pentest<\/span>\u00a0to create a one-of-a-kind pentest platform.<\/li>\n      <li>Vetted scans ensure<span class=\"spanBold\">\u00a0zero false positives.<\/span><\/li>\n      <li>Our intelligent <span class=\"spanBold\">vulnerability scanner emulates hacker behavior<\/span>\u00a0&#038; evolves with every pentest.<\/li>\n      <li>Astra\u2019s scanner helps you shift left by integrating with your CI\/CD.<\/li>\n      <li>Our platform helps you\u00a0<span class=\"spanBold\">uncover, manage &#038; fix<\/span>\u00a0vulnerabilities in one place.<\/li>\n      <li>Trusted by the brands\u00a0<span class=\"spanBold\">you trust<\/span>\u00a0like Agora, Spicejet, Muthoot, Dream11, etc.<\/li>\n    <\/ul>\n    <div class=\"ctaHead\">\n      <a href=\"\/contact-us\" class=\"ctaOne\" target=\"_blank\" rel=\"noopener\">Let\u2019s Talk<\/a>\n      <a href=\"\/pricing\" class=\"ctaTwo\" target=\"_blank\" rel=\"noopener\">Get Started<\/a>\n    <\/div>\n   <\/div>\n   <div>\n    <img decoding=\"async\" src=\"\/cdn-cgi\/image\/quality=80,format=auto,onerror=redirect,metadata=none\/https:\/\/cdn-blog.getastra.com\/2024\/08\/b262d665-cto.png\" height: \"344\" width\"320\" alt=\"cto\" class=\"ctoImg\" \/>\n   <\/div>\n  <\/div>\n  \n<\/div>\n\n\n<h2 class=\"wp-block-heading\" id=\"requirements\"><span class=\"ez-toc-section\" id=\"What_Are_The_12_PCI_Application_Security_Requirements\"><\/span>What Are The 12 PCI Application Security Requirements?<span class=\"ez-toc-section-end\"><\/span><\/h2>\n\n\n\n<h3 class=\"wp-block-heading\">1. Establish and Maintain a Secure Network:&nbsp;<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">Create and consistently maintain a secure network. Use firewalls to segment cardholder data from other networks, change default passwords, and ensure secure network configurations to prevent unauthorized access. Regularly update and patch network systems to address known vulnerabilities.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">2. Encrypt Stored Cardholder Data:&nbsp;<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">Protect stored cardholder data by implementing strong encryption measures. Use strong encryption protocols and mechanisms like IPSEC, SSL\/TLS, SSHIPSEC, SSL\/TLS, and SSH to ensure that sensitive information is safe from unauthorized access or data breaches.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">3. Manage Vulnerabilities:&nbsp;<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">Regularly address <a href=\"https:\/\/www.getastra.com\/blog\/security-audit\/what-is-vulnerability\/\">vulnerabilities<\/a> in your systems and PCI web applications. Implement anti-virus software, conduct system patching, and maintain a robust system of threat detection and remediation.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">4. Enforce Access Control Measures:&nbsp;<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">Implement strong access control measures within your organization. This involves assigning unique user IDs and employing multi-factor authentication to ensure that only authorized individuals have access to sensitive data.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">5. Continuously Monitor and Test Networks:&nbsp;<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">Regularly monitor and test your security systems. Deploy intrusion detection systems and conduct periodic security testing, such as penetration testing, to identify vulnerabilities.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">6. Develop Comprehensive Security Policies:&nbsp;<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">Create and communicate a comprehensive security policy. This policy should cover all aspects of PCI compliance security requirements and serve as a guide for all employees and relevant parties, outlining their responsibilities and the organization&#8217;s security protocols.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">7. Limit Access to Cardholder Data:&nbsp;<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">Restrict access to cardholder data on a &#8220;need-to-know&#8221; basis as per the Principle of Least Privilege. Only individuals whose job responsibilities require access should be granted permission to view or handle sensitive information.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">8. Monitor and Test Networks Regularly:&nbsp;<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">Focus specifically on network security by regularly testing and monitoring your network systems to identify and address vulnerabilities and threats. Implement Intrusion Detection Systems (IDS), and maintain detailed logs of security events, including access attempts, configuration changes, and system activities.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">9. Secure Physical Access:&nbsp;<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">Implement security measures to restrict physical access to areas containing cardholder data. This can involve access control systems, visitor logs, and surveillance cameras to monitor and control access to physical locations housing sensitive information.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">10. Encrypt Data Transmissions:&nbsp;<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">Ensure that cardholder <a href=\"https:\/\/www.getastra.com\/blog\/knowledge-base\/data-protection-rules\/\">data<\/a> is encrypted during transmission. For applications that handle online transactions, it is crucial to use encryption to safeguard sensitive information as it travels across networks.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">11. Update Security Policies Ongoing:&nbsp;<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">Keep your security policies up-to-date. Regularly review and update your security policies to adapt to the evolving threat landscape and incorporate new security measures and best practices.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">12. Maintain a Structured Vulnerability Management Program:&nbsp;<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">Establish a structured program for managing vulnerabilities. Start by conducting regular scans and assessments of your systems and applications to identify vulnerabilities and promptly address them.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\"><span class=\"ez-toc-section\" id=\"How_can_Astra_Help\"><\/span>How can Astra Help?<span class=\"ez-toc-section-end\"><\/span><\/h2>\n\n\n<div class=\"gb-container gb-container-0d16e733\">\n<div class=\"gb-container gb-container-5c89a587\">\n\n<div class=\"wp-block-group is-nowrap is-layout-flex wp-container-core-group-is-layout-8f761849 wp-block-group-is-layout-flex\">\n<div class=\"gb-headline gb-headline-b9454617 gb-headline-text\">See Astra\u2019s continuous Pentest platform in action.<\/div>\n<\/div>\n\n<\/div>\n\n<div class=\"gb-container gb-container-c6f37f68\">\n\n<a class=\"gb-button gb-button-c5f2ad3e gb-button-text\" href=\"https:\/\/astra.sh\/product-demo\" target=\"_blank\" rel=\"noopener\"><strong>Take a Product Tour<\/strong><\/a>\n\n<\/div>\n<\/div>\n\n\n<p class=\"wp-block-paragraph\">As a trusted PCI Penetration Tester, <a href=\"https:\/\/www.getastra.com\/services\/it-security-audit-services\">Astra\u2019s<\/a> team strives to continuously eliminate vulnerabilities. Our comprehensive suite of cybersecurity solutions blends automation and manual expertise to run 9300+ tests and PCI compliance checks, ensuring complete safety, irrespective of the threat and attack location.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">With zero false positives, seamless tech stack integrations, and real-time expert support, we strive to make PCI Compliance and cybersecurity simple, effective, and hassle-free for businesses worldwide.<\/p>\n\n\n\n<figure class=\"wp-block-image\"><img decoding=\"async\" src=\"https:\/\/lh7-us.googleusercontent.com\/McLcRLmyKeDCMpX8g1KvHJ_J8B4DSHQC2qvY7ARu8aLWxHEji3hdYylKT8GWIxYQGp6OI_in2c6Py1uRIRXnhFgRBHsRpB6BZ43Z3d8e0DUM5cfdgFgwHRLKwrs_GeJQA0QdExKB9dDnc4Dj8QsW42U\" alt=\"PCI application security requirements Astra\"\/><\/figure>\n\n\n\n<h2 class=\"wp-block-heading\"><span class=\"ez-toc-section\" id=\"Conclusion\"><\/span>Conclusion<span class=\"ez-toc-section-end\"><\/span><\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">PCI DSS is an indispensable framework developed by major credit card companies to secure cardholder data in a dynamic and ever-evolving cybersecurity landscape. Adhering to the 12 critical PCI application security requirements is not just a choice but a necessity for organizations, as it safeguards against data breaches, fraud, and potential liabilities.<\/p>\n\n\n<style>\n\n.ctaSaasWrap{\n  padding:35px;\n  border: 6px;\n  background-image: url('https:\/\/cdn-blog.getastra.com\/2024\/08\/838dc804-smallimgicbg.png');\n  background-size: cover;\n  background-repeat: no-repeat;\n  position: relative;\n  background-position: right;\n  height: 275px;\n  border-radius: 10px;\n  margin: 20px 0px; \n}\n\n.pentestHeading{\n  color: #575757;\n  font-size: 24px;\n  font-weight: 600;\n  color: #575757;\n  max-width: 450px;\n}\n\n.ctaSaasHead {\n    display: flex;\n    align-items: center;\n    grid-gap: 1rem;\n}\n\n.ctaOne {\n    text-decoration: none;\n    background-color: #2F76F8;\n    color: #ffffff !important;\n    padding: 10px 25px;\n    border-radius: 6px;\n    font-weight: 600;\n}\n\n.ctaTwo {\n    text-decoration: none;\n    background-color: #24BC94;\n    color: #ffffff !important;\n    padding: 10px 25px;\n    border-radius: 6px;\n    font-weight: 600;\n}\n\n.spanBoldBlue {\n    color: #3078FE;\n    font-weight: 700;\n}\n\n.ctaSaasImg{\n  position: absolute;\n  bottom: 0px;\n  right: 10px;\n  height: 250px;\n  width: 240px;\n}\n\n@media(max-width: 768px){\n\n}\n\n@media(max-width: 576px){\n   .pentestHeading{\n      font-size: 28px;\n    }\n\n   .ctaSaasImg{\n     display: none;\n   }\n}\n\n<\/style>\n\n<div class=\"ctaSaasWrap\">\n  <p class=\"pentestHeading\">Make your SaaS Platform the <span class=\"spanBoldBlue\">safest place on the Internet.<\/span><\/p>\n  <p style=\"font-size: 16px; line-height: 1.5;\">With our detailed and specially <br \/> curated SaaS security checklist.<\/p>\n\n  <div class=\"ctaSaasHead\">\n    <a href=\"https:\/\/astra.sh\/saas-security-checklist\" class=\"ctaOne\" target=\"_blank\" rel=\"noopener\">Download Checklist<\/a>\n  <\/div>\n\n  <img decoding=\"async\" src=\"\/cdn-cgi\/image\/quality=80,format=auto,onerror=redirect,metadata=none\/https:\/\/cdn-blog.getastra.com\/2024\/08\/96ad3cf0-girlcta.png\" alt=\"character\" class=\"ctaSaasImg\" \/>\n<\/div>\n\n\n<h2 class=\"wp-block-heading\"><span class=\"ez-toc-section\" id=\"FAQs\"><\/span>FAQs<span class=\"ez-toc-section-end\"><\/span><\/h2>\n\n\n<div id=\"rank-math-faq\" class=\"rank-math-block\">\n<div class=\"rank-math-list \">\n<div id=\"faq-question-1698738720415\" class=\"rank-math-list-item\">\n<h3 class=\"rank-math-question \">What is PCI security?<\/h3>\n<div class=\"rank-math-answer \">\n\n<p>PCI security, or Payment Card Industry Data Security Standard, is a set of requirements and best practices designed to safeguard sensitive cardholder data during payment transactions. It ensures the protection of data and reduces the risk of fraud and data breaches.<\/p>\n\n<\/div>\n<\/div>\n<div id=\"faq-question-1698738774336\" class=\"rank-math-list-item\">\n<h3 class=\"rank-math-question \">Who issues PCI standards?<\/h3>\n<div class=\"rank-math-answer \">\n\n<p>The Payment Card Industry Security Standards Council (PCI SSC) issues PCI standards. It is a global organization responsible for establishing and maintaining security standards for payment card transactions to protect cardholder data and enhance payment security.<\/p>\n\n<\/div>\n<\/div>\n<\/div>\n<\/div>","protected":false},"excerpt":{"rendered":"<p>PCI DSS (Payment Card Industry Data Security Standards) is a set of guidelines developed in 2004 by major credit card companies namely MasterCard, Visa, Discover, American Express, and JCB to ensure the security of cardholder data. Its primary objective is to reduce the risk of data breaches and fraud.&nbsp; However, with the evolution and sophistication &#8230; <a title=\"The 12 PCI Application Security Requirements: A Comprehensive Guide\" class=\"read-more\" href=\"https:\/\/www.getastra.com\/blog\/compliance\/pci\/pci-application-security-requirements\/\" aria-label=\"Read more about The 12 PCI Application Security Requirements: A Comprehensive Guide\">Read more<\/a><\/p>\n","protected":false},"author":111,"featured_media":29085,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[700],"tags":[],"class_list":["post-29082","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-pci"],"_links":{"self":[{"href":"https:\/\/www.getastra.com\/blog\/wp-json\/wp\/v2\/posts\/29082","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.getastra.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.getastra.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.getastra.com\/blog\/wp-json\/wp\/v2\/users\/111"}],"replies":[{"embeddable":true,"href":"https:\/\/www.getastra.com\/blog\/wp-json\/wp\/v2\/comments?post=29082"}],"version-history":[{"count":7,"href":"https:\/\/www.getastra.com\/blog\/wp-json\/wp\/v2\/posts\/29082\/revisions"}],"predecessor-version":[{"id":43883,"href":"https:\/\/www.getastra.com\/blog\/wp-json\/wp\/v2\/posts\/29082\/revisions\/43883"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.getastra.com\/blog\/wp-json\/wp\/v2\/media\/29085"}],"wp:attachment":[{"href":"https:\/\/www.getastra.com\/blog\/wp-json\/wp\/v2\/media?parent=29082"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.getastra.com\/blog\/wp-json\/wp\/v2\/categories?post=29082"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.getastra.com\/blog\/wp-json\/wp\/v2\/tags?post=29082"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}