Security

Your clients trust you. We take that seriously.

StoreFulfil handles order, inventory and returns data for multiple brands in one platform — so isolation and careful engineering are core design constraints, not afterthoughts.

Platform security

How the platform protects your data.

Per-client access boundaries

The platform applies client scope to orders, stock and returns so brand users are restricted to their own operational view.

Encrypted credentials

Stored Shopify tokens and integration credentials are encrypted and are not displayed in the interface.

Scoped Shopify access

Store connections request only the API scopes the integration actually needs, and missing permissions are detected rather than failing silently.

Auditable changes

Stock adjustments, restocks and fulfilment actions are recorded with who did what, when.

Verified webhooks

Incoming webhooks are verified before they touch your data, and failed deliveries are surfaced for review.

Transport encryption

Browser connections to the platform use HTTPS/TLS in transit.

Honest posture

What we do — and do not — claim.

We do not list certifications we do not hold, and we will not claim compliance badges for marketing effect. If you have a security questionnaire or specific requirements, send them over — you will get straight answers from the people who build the platform.

Have security requirements to discuss?

Send us your questions or questionnaire and we will respond directly.