It's actually a valid point. Of course, it depends on some security checks. When we've made our few first websites, we've implemented some anti-viruses and made PCI compliance as fast as possible, so our potential customers could understand that we've made everything about security. There is this
pci compliance company you can check out their offerings, and list of services they can provide.