The agency has a public-facing site where they accept payment for services, and it needs to be PCI DSS compliant to ensure the secure handling of cardholder data in financial transactions. They were aware of the PCI DSS 4 changes, specifically 6.4.3 and 11.6.1, but had not implemented any client-side script mitigation and reporting tools. With the March 31, 2025 deadline approaching, they needed to choose and deploy a solution quickly.