If you are making a webapp with online purchases and you want to be able to save a user's credit card info so they don't have to type it in again, where is it stored? Do you generally store that encrypted on the database? Or is it best to save it in an encrypted browser cookie? Just curious.