The primary account number (PAN) is the defining factor for constituting cardholder data. If cardholder name, service code, and/or expiration date are stored, processed or transmitted with the PAN, or are otherwise present in the cardholder data environment, they must also be protected in accordance with applicable PCI Data Security Standard (PCI DSS) requirements. See below chart:
Sensitive authentication data must not be stored after authorization (even if encrypted).
 Full track data from the magnetic stripe, equivalent data on the chip, or elsewhere
 The three- or four-digit value printed on the front or back of a payment card
 Personal identification number entered by cardholder during a card-present transaction, and/or encrypted PIN block present within the transaction message