Skip to content

How Pagefully protects your data

Your key is encrypted before it is stored and never shown again; your data stays in the United States with a few named providers.

ExplanationUpdated

Pagefully holds three things worth protecting: your App Store Connect key, your listing and pages, and your email address. The key is encrypted before it is stored and never shown again. Everything is kept in the United States, encrypted in transit and at rest, and each customer’s data stays separate. The full statements are on the security page and in the privacy policy; this article says the same in fewer words.

Your key

The key is encrypted with a key held outside the database before it is stored. It is never written to a log, never sent to a browser, and never shown again after you add it. Settings shows only its Key ID. When something fails, the record holds a code and a job id, never a key, a token or an Apple payload.

It is an App Manager key, which is all Pagefully needs: enough to read your listing and create custom product pages, and no more. What it reads and writes is listed in What the key can and cannot do.

Where your data lives

In the United States: the database and files in Oregon, the site in Portland, the engine in San Jose. Data is encrypted in transit and at rest with our providers. A small number of providers help us run Pagefully, for hosting, AI models, email and payments; each gets only what its job needs, and none may use your data for anything else. They are named in Third-party services Pagefully uses.

Kept separate

Each customer’s data is kept separate. Reads from a browser go through row-level security, and every write goes through our server after it has checked that you belong to the workspace. The browser never writes to the database. We do not combine one customer’s listing, reviews, pages or results with another’s, and we sell nothing and show no ads.

Who can see what

You see your own workspace. The people who run Pagefully have a few screens for support: every workspace’s background jobs, as codes and times only, with no payloads kept; the screenshots customers send us with their note; and free-usage counts, as hashes only, with no address or email. Your key is not on any screen, because it is never sent to a browser. Anything you write to hello@pagefully.com is read and answered by a person.

You stay in control at Apple

Revoking the key in App Store Connect, under Users and Access, Integrations, stops Pagefully at once, whatever we hold. Your published pages stay live. Removing the key in Settings deletes our encrypted copy at once; disconnecting an app deletes our copy of its listing, screenshots, intents and pages at once. Neither changes anything in App Store Connect. The steps are in Remove, replace or revoke the key.

No system is perfectly secure. If we learn of a breach that affects you, we tell you by email without undue delay, and tell the authorities where the law requires.

What this means for you

  • Create an App Manager key for Pagefully, not an Admin key. It can do what Pagefully needs and nothing more.
  • Keep the .p8 file somewhere safe of your own. We cannot show it to you again.
  • If you ever doubt the key, revoke it at Apple first. That stops everything, and you can connect a new one later.
  • What we collect in each situation is in What data Pagefully collects and why; a copy or deletion is one email away, as Get a copy of your data, or have it deleted describes.
  • Found a weakness? Report a security issue.
Was this helpful?

Still stuck? Contact support, or write to hello@pagefully.com.