Audit report
ShipMonk | Order Fulfillment
Broad accessReach : moderateSensitive Accessby ShipMonk · Orders and shipping · Shopify App Store
Stress Less, Grow More.
Key insights
- ◆Established 3PL publisher (ShipMonk) with 12 fulfillment centers across US, UK, Europe; not a shell developer.
- ◆App rating 4.4/5 with ~95 reviews; not Built for Shopify badged.
- ◆Scopes (customer PII, geolocation/IP, products, orders, inventory, fulfillment write) are consistent with a 3PL fulfillment integration.
- ◆Publisher claims SOC-2-compliant fulfillment operations but no other certifications (ISO27001, PCI DSS, HIPAA) confirmed publicly.
Top findings
Analysis summary
Stress Less, Grow More.
- ◆Established 3PL publisher (ShipMonk) with 12 fulfillment centers across US, UK, Europe; not a shell developer.
- ◆App rating 4.4/5 with ~95 reviews; not Built for Shopify badged.
- ◆Scopes (customer PII, geolocation/IP, products, orders, inventory, fulfillment write) are consistent with a 3PL fulfillment integration.
- ◆Publisher claims SOC-2-compliant fulfillment operations but no other certifications (ISO27001, PCI DSS, HIPAA) confirmed publicly.
- ◆No CVE, breach, or Shopify security incident found tied to ShipMonk via WebSearch.
This section is available to signed-in users
Sign up free to unlock findings, data flow and theme code analysis for every Shopify app.
Get startedOAuth scopes requested
These are the access permissions this app asks for during install. The sensitivity column reflects PII exposure and merchant impact.
| Scope | Sensitivity | Why we flag it |
|---|---|---|
read_customers | High | Customer name, email, phone, physical address required for shipping labels. |
read_customer_geolocation_ip | High | Geolocation, IP, browser/OS disclosure is broader than needed for fulfillment. |
read_staff | Medium | Store owner contact data for account setup. |
read_products | Medium | Product catalog sync for inventory. |
read_orders | High | Order data needed to pick/pack/ship. |
read_inventory | Medium | Inventory levels across locations. |
read_locations | Low | Location data for multi-warehouse routing. |
write_assigned_fulfillment_orders | High | Required to mark items fulfilled, legitimate for 3PL. |
write_merchant_managed_fulfillment_orders | High | Write fulfillment status; broad blast radius if compromised. |
read_customersCustomer name, email, phone, physical address required for shipping labels.
read_customer_geolocation_ipGeolocation, IP, browser/OS disclosure is broader than needed for fulfillment.
read_staffStore owner contact data for account setup.
read_productsProduct catalog sync for inventory.
read_ordersOrder data needed to pick/pack/ship.
read_inventoryInventory levels across locations.
read_locationsLocation data for multi-warehouse routing.
write_assigned_fulfillment_ordersRequired to mark items fulfilled, legitimate for 3PL.
write_merchant_managed_fulfillment_ordersWrite fulfillment status; broad blast radius if compromised.
This section is available to signed-in users
Sign up free to unlock findings, data flow and theme code analysis for every Shopify app.
Get startedThis section is available to signed-in users
Sign up free to unlock findings, data flow and theme code analysis for every Shopify app.
Get startedNetwork surface
- Primary domain
- shipmonk.com
- TLS grade
- A
- HSTS
- Missing
- CSP
- Missing
HTTPS via Cloudflare, valid cert, but no HSTS or CSP headers on the root page.
Compliance & certifications
Policy mentions SOC-2-compliant fulfillment operations; no formal GDPR/CCPA/ISO/PCI/HIPAA attestations surfaced. No data retention period stated.
Privacy policyPublisher reputation
- Publisher
- ShipMonk
- Verified Shopify Partner
- No
- Years active
- 0
- Other apps
- 0