Security

Designed to limit access, not collect more of it

Purchase Ledger keeps each person's private purchase information separate and asks only for the access a feature needs.

Passwords are protected

Passwords are not stored in readable form. Retailer connection secrets are encrypted, and stored information and protected backups are encrypted.

Your account stays separate

Signed-in customers can see only their own private records. Administrative access is limited to legitimate support, security, correction, integrity, and maintenance purposes.

Access can be revoked

Sessions and connected applications can be revoked from Settings. Important administrative views and changes are recorded for accountability.

Controlled administrative access

Copper Pine Digital Holdings LLC administration can access private records when reasonably necessary to provide support, investigate a problem, correct inaccurate information, protect an account, maintain data integrity, or fulfill an authorized request. Administrative access is restricted, and important access and modifications are recorded for accountability. Passwords, authentication tokens, retailer secrets, and encryption keys are not available through the support interface.

How changes are tested

Every proposed production update is evaluated through separate security, usability, and quality-assurance reviews. Identified issues must be corrected and retested before approval. New features and corrections receive regression tests so previously verified behavior continues to be checked as the service evolves. Unreviewed local changes are not deployed directly to production.

Report a security concern

Email support@mypurchaseledger.com with a clear description. Do not include passwords, active connection codes, or unnecessary personal data.