PCI Payment Page Script Audit: requirement 6.4.3 and 11.6.1 on your checkout markup
PCI DSS 4.0.1 requirements 6.4.3 and 11.6.1 have been mandatory since 2025-03-31, and the PCI SSC revised FAQ 1331 on 2026-08-04 so a QSA agreement alone no longer marks them not applicable. This reads a checkout page and names every script that has no authorization method, no integrity method and no inventory row.
In the full version
Export the dated 6.4.3 script inventory as CSV, JSON or HTML
Audit every payment page in the repository in one pass