
PEX follows a straightforward 4-step onboarding process designed to get organizations up and running quickly:
Apply & Submit Details
Set up your account with business and admin information. The intuitive application typically takes ≈15 minutes, with a Customer Effort Score of 85/100, and 80%+ of customers finish the process in one day.
Identity Verification
PEX performs KYC compliance checks (business identity, admin contact). Forms are encrypted, and access to live support is available immediately.
Connect Accounting/ERP
Link your systems—QuickBooks, Sage Intacct, NetSuite, SAP Concur, Xero, Daxko—via the PEX Marketplace at no extra cost. Optional syncing with back-office platforms is available via APIs.
Timeline:
PEX is built to be highly customizable across workflows, controls, integration, and program type:
Spend rule exception requests allow cardholders to request temporary overrides within the app. Administrators can grant or deny with audit trails.
Automate reimbursements, fund replenishments, and recipient workflows for field teams and grants.
PEX offers transparent and tiered pricing:
Disburse (Grants/Incentives): One-time $399 setup, 50 cards included; additional cards are $5 each, with branded cards costing $5,000 extra.
Other fees include:
PEX supports new users through diverse resources:
Administrators & Sales: 8 am–6 pm EST, Mon–Fri; 1-866-685-1898 (admin), 1-877-274-3390 (sales).
Support Knowledge Base: guides for Admin Quick Start, Cardholder Quick Start, Receipt Capture, Funding, Marketplace integrations, and developer documentation.
Large clients using Workforce Solutions receive job aids covering card activation workflows and profile setup.
PEX implements comprehensive security protocols and compliance frameworks:
Implements bank-level encryption for data at rest/in motion and performs real-time fraud monitoring, ACH controls, and transactional defense/cache backup, as detailed in their "Security Checklist."
The system protects against unauthorized access using session timeouts, email confirmation for new logins, IP tracking, and multi-factor measures.
As a Visa® issuer, PEX adheres to PCI DSS standards and undergoes third-party security validations (e.g., SOC 2), supported by secure network controls and regular audits.
Features include role-based permissions, least-privilege access controls, tokenized authentication, and support for OAuth-based API access.
PEX follows a frequent, agile release cadence, keeping its platform up-to-date via:
Support Integration: Each release links to detailed "Release Notes," and invites feedback or questions via support channels.
Management Process
PEX affirms that customers retain ownership of all data—transactions, receipts, reports—with secure access and export rights:
PEX is designed for flexible scaling, accommodating changing organizational needs:
Flexible card removal—via amendment requests (Partner Portal) or dashboard edits—no long lead times.
Transaction balances and card limits are adjustable dynamically, with no locked tiers or prolonged transitions.
PEX’s pricing table covers adding or removing cards dynamically; funds are defunded and returnable at any time.
The Prepaid Expense guide enables terminal defunding and user deactivation at admin discretion; no “locked period” is specified.
1. Automatic Updates & Acceptance:
PEX’s Master Services Agreement and program-specific terms (Credit, Prepaid, Reimbursement) may be updated via notice. Continued use after updates implies acceptance.
2. Contract Term & Termination Notice:
Archived terms (2017) include termination provisions. Current terms don’t specify a fixed duration, implying ongoing monthly service with no automatic rollover. Clause 5.5 allows termination for non-acceptance of material changes.
3. Billing & Debits:
PEX is authorized to automatically debit linked bank accounts for all charges. Upon account termination, recurring debits stop, but authorizations remain intact.
4. Prepaid Card Defunding:
Unused balances on prepaid cards can be defunded by the sponsor at any time, transferred back into the main account.
5. Electronic Agreement & Withdrawal of Consent:
PEX uses electronic agreements and notices under its Electronic Communications Agreement. Users may opt out and request paper copies; a fee may apply.
6. Relationship-Specific Terms:
Each program (e.g., Reimbursement, Prepaid, Credit Expense) has separate schedules; terminating one doesn’t automatically affect others.
PEX adheres to industry security and privacy frameworks, as indicated below:
1. PCI DSS – Required for Visa issuers and handling cardholder data.
2. SOC 2 – For operational security, confidentiality, and availability.
3. ISO 27001/27017/27018 – Supports international information security management, especially for cloud security.
4. GDPR/CCPA – Compliant with privacy frameworks for EU and California users.
5. Role-Based & Zero-Trust Controls – MFA, IP/session tracking, tokenized API access.
6. Encryption & Fraud Protection – Bank-grade TLS, real-time fraud monitoring, session timeouts.
7. Governance & Audits – Regular audits, vulnerability testing, and recommended endpoint security.
8. Customer-Facing Security Features – Strong passwords, phishing guides, and card controls.
9. Legal Compliance Infrastructure – Electronic Communications Agreement enables lawful digital notices; printed versions available upon request.

PEX
By Prepaid Expense Card Solutions, Inc.