File Systems and Communication
All access to the Craftybase website is restricted to HTTPS encrypted connections.
All data retrieval from external feeds (Etsy, Shopify, Square, PayPal, etc) is done with your unique access token over a secure connection using the services official API.
User passwords are secured with BCrypt. They are never stored in the database in plaintext and are not readable by staff. Passwords do provide access to the Craftybase website, however, and it is the responsibility of the end user to protect his password with care.
Integration with your connected channels is done via API keys.
No Craftybase staff will access your business data unless required for support reasons. In cases where staff must access business data in order to perform support, we will get your explicit consent each time, except when responding to a critical security issue or suspected abuse.
When working a support issue we do our best to respect your privacy as much as possible, we only access the minimum data needed to resolve your issue.
Finally, it's worth noting that Craftybase's staff is quite small, limiting the number of individuals who require access to provide you support.
Credit Card Safety
When you purchase a paid Craftybase subscription, your credit card data is not transmitted through nor stored on our systems. Instead, we depend on Stripe and PayPal. Stripe and PayPal are certified to PCI Service Provider Level 1, the most stringent level of certification available. Stripe's security information and PayPal's security information is available online.
We utilise the services of ServerMania to run and operate our servers which are based in the USA. The physical data centre has numerous physical security measures including biometric security, full CCTV coverage as well as 24/7 manned security.
Have a question or concern? Please email us at firstname.lastname@example.org.