Security

Last updated August 2, 2026

Authentication

Account authentication is handled by Clerk, with support for organization-based access control so each store is isolated to its own team.

Data isolation

Every store is scoped by a unique store identifier enforced at the database query level, so one merchant’s data is never accessible to another.

Payments

Card payments are processed by Stripe. Launchly never stores raw card numbers on its own infrastructure. Platform billing and merchant payments run through two independent, separately secured Stripe integrations.

Third-party credentials

Credentials for connected apps (e.g. Shopify, Mailchimp) are encrypted at rest before being stored.

Infrastructure

Launchly runs on managed cloud infrastructure with encrypted connections (TLS) for all traffic between your browser, your storefront, and our servers.

Reporting a vulnerability

If you believe you've found a security issue, please report it to support@launchly.com rather than filing a public issue. We investigate all reports promptly.