Can I store my users\' credit card\'s expiration date & last 4 digits? The reasons for this is so we can notify the user that their card is about to expire and that they
There's a whole set of rules about what you can and cannot store, Google for PCI-Compliance. However, in short, yes, the expiration date and last-4 would be ok to store. The huge no-no is storing the CID number (number on the back of the card), but there are many other rules too.
Edit: This is based on the US rules.