Security & privacy
Connecting your store is an act of trust. This page says exactly what Figbase can access, what it can't, who sees what, and what happens when you leave — in plain terms, matching what Shopify shows you on the consent screen.
Read-only by design
Figbase cannot edit your store — no products, refunds, settings, or orders. The connection can only read.
Payout-scoped
Revenue is verified from Shopify Payments payouts — settlement amounts, dates, and status. Nothing else.
No customer, order, or product data
We never request those scopes. Verifying your tier doesn’t require your catalogue or your customers.
You choose what shows
Tier, exact figure, growth only, or private. Your brand stays stealth unless you un-stealth it.
Not a vendor product
Agencies, apps, and 3PLs cannot see or buy your store-level revenue. They see only what you make public.
Disconnect anytime
Disconnecting stops syncing immediately and your badge lapses. Verification never outlives its source.
Exactly what we access
The Shopify connection requests two read-only scopes — read_shopify_payments_payouts and read_shopify_payments_accounts. You can see both on Shopify's consent screen before you approve anything. In full, Figbase holds:
What we never access
These scopes are never requested, so this data never reaches Figbase — there is nothing here to leak, sell, or subpoena:
The same applies to X: we record your public identity — user ID, username, profile picture — at the moment you connect, and keep no X access token afterward. Figbase cannot read your DMs, see your followers, or post as you.
How your data is protected
Everything moves over TLS, and Shopify access tokens are encrypted at rest — they never appear in the dashboard, in emails, or to vendors. Shopify only ever grants the scopes an app requests, and Figbase requests exactly two; the connection is checked at install time and refused if the grant doesn't match.
Figbase is a small company and doesn't pretend otherwise: internal access to production data is limited to what operating, securing, and supporting the service requires. As Figbase grows, we'll formalize the security program — including independent audits — and update this page when that status changes, not before.
Vendors and your data
Vendors cannot see or buy store-level revenue — not agencies, not apps, not 3PLs, not lenders. A vendor sees exactly what you chose to make public, plus your verified tier when you contact them yourself.
Client logos work the same way: a vendor's request shows nothing until the brand's verified owner approves it, every tile is stamped with the brand's domain, and approval can be revoked at any time — the logo disappears with it.
Aggregated, anonymized insights (category trends, tier distributions) never identify an individual store, and vendors never receive operator-level data.
Leaving
Disconnect a storeand syncing stops immediately, the stored access token is deleted, and your badge lapses — verification is a live signal, not a certificate, so it can't outlive its source.
Delete your accountand your profile, connections, synced revenue data, and tokens are erased. Shopify's own privacy webhooks are honored too: uninstalling the app from your store, or a store redaction request, wipes what we hold about that shop.
Reporting a security issue
Found a vulnerability? Email support@figbase.com with enough detail to reproduce it. We read every report, and we ask that you give us a reasonable window to investigate before public disclosure. See also our privacy policy and terms.
Review the scopes yourself on Shopify's consent screen — that's the point.