Trust is a product feature
Ship Safe Offers is designed so a merchant receives the decision it needs while protected pricing logic, rate information, and learning datasets remain server-side.
How we protect data and the platform
- Keyed, least-privilege service boundaries between storefronts, merchant controls, and the protected engine.
- Authentication that fails closed at startup, tenant isolation enforced in code, and request and payload limits on inbound traffic.
- Encryption in transit and secrets kept server-side rather than embedded in a storefront or mobile application.
- Margin Safe Packer stores only a short-lived session token in the iOS Keychain, refuses insecure connections, and produces tamper-evident, append-only evidence records.
- Automated tests gate release candidates, and higher-risk authentication, tenant, money-movement, and deployment changes receive focused security review before production use.
- Backup, restore, retention, and least-privilege access controls are verified for each production service before that service is admitted to its approved merchant scope; an incomplete recovery gate narrows or blocks that launch scope.
Intellectual property and confidentiality
The method is patent-pending under several filed U.S. provisional applications, with non-provisional applications in preparation. Pricing models, parameters, rate information, and learning datasets are also protected as trade secrets. Architecture-level discussion, demonstrations involving protected internals, and system access require appropriate confidentiality protection.
Responsible disclosure
If you believe you found a security issue, email help@shipsafeoffers.com. Please do not access or change another party’s information or degrade the Services while testing. We appreciate responsible disclosure and will work in good faith with researchers. Enterprise buyers may request a security one-pager and executable DPA.