OneFold is built and operated by NextIQum AI. Security reports and questions go to hello@nextiqumai.com and are handled by our team directly.
Store credentials are encrypted
When you connect a Shopify or WooCommerce store, the access token or keys are encrypted at rest using authenticated encryption. They are used only to publish products on your behalf, and you can disconnect a store at any time to remove them.
Encryption in transit
All traffic to OneFold is served over HTTPS, so data moving between your browser, our servers, and the stores you connect is encrypted end to end.
Least-privilege access
We ask marketplaces for only the permissions the product needs, for example read and write access to products, and nothing more. Your storefront, customers, and orders are outside that scope.
Passwords
Account passwords are stored only as salted, hashed values, never in plain text. We can't see your password, and neither can anyone else.
Operational safety
- Errors are logged with full detail on the server so issues are caught and fixed quickly, without exposing sensitive data to users.
- Products publish as drafts by default, so nothing goes live to your customers without your review.
- Your own listings and product data can be exported at any time, and deleting your account removes them.
Reporting a concern
If you believe you've found a security issue, please tell us right away through our contact page. We take reports seriously and will respond promptly.