Margin Machine ✓ Read-only by design
Security & privacy

How your data is protected

Plain answers to the fair questions every store owner asks before connecting anything. No jargon — just how it actually works.

You create the access yourself — read-only, never your password

Margin Machine reads your numbers through a private connection created inside your own admin (we walk you through it — it takes about two minutes) and, if you run ads, a read-only key from your own ad account. We only ever receive those read-only keys. We never ask for, see, or use your store login.

We never modify anything in your store

The permissions on that connection only allow reading reports and payouts. With those permissions it is technically impossible for Margin Machine to change anything — not products, not prices, not orders, not customers. Ads access is the read-only kind, and any cost spreadsheet is shared view-only.

Revocable any time, in one click

Because you created the access, you can end it any time: remove the private app in your store admin, revoke the ad token, or un-share the sheet. Access stops immediately — no need to ask us, no waiting.

Credentials are stored encrypted

Access keys live as encrypted secrets on the hosting platform — never in the code, never in a spreadsheet. Anything secret the dashboard itself must keep (like two-factor seeds) is encrypted again inside the database, which itself sits on an encrypted disk. Sign-in sessions use signed, HTTPS-only cookies, and you can turn on two-factor authentication from your account page.

Each client's data is fully isolated

Every client gets their own deployment: a private web address and a separate database. And every sign-in only ever sees its own businesses — the server refuses requests for anyone else's data, it doesn't just hide the menu. No client can ever see another client's numbers.

Access is logged — and we don't browse

Every sign-in (including failed attempts) is recorded, and you can see the log on your own account page. Dan only looks at your dashboard when you ask for support or a sync breaks — every support view is logged where you can see it, and your settings include a switch that blocks support access outright: when it's off, the server refuses support sign-ins to your data, and even the refused attempts show up in your log.

Support access is read-only, too: a support session can look, but the server refuses any change it tries to make — and logs that attempt for you as well.

Your data is never shared

Your numbers exist to show you your profit — nothing is sold, shared, or used for anything else.

Still have a question? Ask it straight.

Book a 15-min demo

Or text Dan at (424) 209-5431 or email inverciblellc@gmail.com.