Currently, we are level SAQ A PCI compliant. There is a new set of rules coming into play in March, and we'll need to at least audit if we continue to fit the level we are at now.
collab page: https://collab.wikimedia.org/wiki/Fundraising/Engineering/PCI_Gap_Assessment_Feb_2015