Skip to content
Payfim - Secure. Simple. Yours.
Security

Security at Payfim

Payfim is designed so that the most dangerous things simply cannot happen: no one can hold your funds, change a price or fake a payment.

Non-custodial by architecture

Payfim only ever sees public receiving addresses. There are no private keys on the server, no hot wallet and no balance to steal. Even a fully compromised web server cannot move your coins.

Prices are set server-side

Store plugins create invoices through an authenticated server-to-server API. The amount never travels through the shopper's browser, so it cannot be edited with developer tools - a common flaw in simpler crypto plugins.

Every payment is matched exactly once

Signed, re-verified webhooks

Notifications to your store carry an HMAC-SHA256 signature over a timestamp and the exact body, and are rejected after five minutes. Our official plugins additionally re-read the invoice from your gateway and compare the amount and currency with the order before marking it paid.

Hardened dashboards

Signed licenses

License responses from payfim.com are signed with Ed25519 and verified by your gateway. If payfim.com is ever unreachable, your checkout keeps working.

Reporting a vulnerability

Please email info@payfim.com with the subject "Security". We respond within 48 hours and credit researchers who report responsibly.