Just to clarify, especially for other readers of this discussion: Modern versions of Zen Cart DO NOT STORE ANY CREDIT CARD NUMBERS, NOR PARTIAL MIDDLE DIGITS, and DOES NOT EMAIL CARD NUMBERS.
If you have that functionality on your site, then you're using a VERY old obsolete version of Zen Cart, or you've copied those dangerous module files from a very old non-pci-compliant version, or you're using an addon which has created the capability.
IT IS NOT (AND NEVER HAS BEEN) SAFE TO STORE OR EMAIL CREDIT CARD DETAILS. Doing that leaves you vulnerable to fraud and theft, and the related financial liabilities per the contract you've signed with your credit card processing service. Be sure you understand the risks you're taking!