At TreasuredTale ("TreasuredTale", "we", "us", "our"), your security, privacy, and trust are our highest priority. 

We use industry-leading security technologies, best-practice encryption standards, and trusted Shopify infrastructure to ensure that your personal data and payment information remain protected at every moment of your shopping experience.

This Security Policy explains how we protect:

  • Your personal data;
  • Your payment information;
  • Your account;
  • Your order and checkout experience;
  • The integrity of our store and systems.

This Policy works together with our:

  • Terms & Conditions;
  • Privacy Policy;
  • Cookie Policy;
  • Refund & Return Policy;
  • Warranty Policy;
  • Anti-Fraud, Chargeback & Abuse Prevention Policy.

 

1. Secure Website & SSL Encryption

TreasuredTale uses 256-bit SSL (Secure Socket Layer) encryption, the same level used by major financial institutions.

This ensures:

  • Your checkout is fully encrypted;
  • All data you enter is unreadable to third parties;
  • Your login, payment, and personal details remain protected;
  • A secure connection (https:// + padlock icon) is always active.

No customer can place an order without an encrypted, secure connection.

 

2. Secure Payments (We Never Store Full Card Details)

All payments are processed securely through Shopify Payments and trusted global payment gateways (e.g., Stripe, PayPal, Klarna, etc., depending on region).

To protect you:

  • We do not store full credit card numbers.
  • We cannot access your full payment card details.
  • Your payment information is tokenized and encrypted.
  • All transactions comply with PCI DSS Level 1, the highest payment security standard.

Your payment information stays safe from start to finish.

 

3. Shopify's Enterprise-Level Security Infrastructure

TreasuredTale is built on Shopify, which provides:

  • Level-1 PCI-compliant platform security;
  • 24/7 threat monitoring;
  • Automated DDoS protection;
  • Secure server hosting;
  • Redundant data backups;
  • Global SSL certificate management;
  • Continuous security patching;
  • Firewalls, intrusion detection & malware scanning.

Shopify powers millions of the world's safest online stores — enabling TreasuredTale to offer enterprise-grade protection to every customer.

 

4. Account Security & Customer Responsibilities

To keep your account secure:

  • Use a strong password;
  • Do not share your login details with anyone;
  • Log out after ordering on shared devices;
  • Notify us immediately if you suspect unauthorized access:
    support@treasuredtalestore.com.

We will never ask for:

  • Your password;
  • Your full card number;
  • Your payment login credentials.

If you receive suspicious messages, contact us immediately.

 

5. Fraud Detection & Risk Monitoring

To protect genuine customers and prevent abuse, TreasuredTale uses:

  • Shopify Fraud Analysis;
  • Automated fraud filters;
  • Address and geolocation validation;
  • IP reputation checks;
  • Multi-order pattern tracking;
  • Bot-blocking systems;
  • Abuse and chargeback monitoring;
  • Behavior-based risk scoring.

Suspicious or high-risk orders may be:

  • Flagged;
  • Reviewed manually;
  • Temporarily on hold;
  • Cancelled and refunded.

For details, see our Anti-Fraud, Chargeback & Abuse Prevention Policy.

 

6. Protection of Personal Information

Your personal information is protected by:

  • Encryption at rest;
  • Secure database storage;
  • Minimum-access permission rules;
  • Regular system audits;
  • Controlled access with authentication;
  • Privacy-by-design principles.

We do not sell customer personal data.
We do not share data for advertising unless legally allowed and disclosed.

All data processing is detailed in our Privacy Policy.

 

7. Secure Communication & Email Verification

Official messages from TreasuredTale will only come from: 
support@treasuredtalestore.com

We will never ask you for sensitive information by email.

If you receive suspicious communication, forward it to our support team for verification.

 

8. Third-Party Security Partners

We work only with reputable, secure technology partners, including:

  • Shopify;
  • PCI-compliant payment processors;
  • Trusted review platforms (Judge.me, etc.);
  • Email/SMS providers with secure infrastructure.

Each partner is responsible for their own security practices (see Third-Party Services in our Terms & Conditions).

 

9. Data Breach Procedures

In the unlikely event of a data breach:

  • We will take immediate steps to secure the system.
  • We will notify affected customers as required by law.
  • We will comply with all U.S. and international breach-reporting regulations.
  • We will cooperate with Shopify and relevant authorities.

Our commitment: full transparency and rapid response.

 

10. Your Rights & How to Contact Us

If you have questions about security, privacy, account protection, or suspicious activity, contact our team:

  • Email: support@treasuredtalestore.com
  • Subject: "Security Inquiry".

We respond promptly and take every concern seriously.

 

11. Changes to This Security Policy

We may update this Security Policy to reflect:

  • Improvements in technology;
  • New security best practices;
  • Regulatory changes;
  • Shopify infrastructure updates.

When updated, the "Last updated" date will change accordingly.

 

Last updated: August 15, 2025
Version 3.0