Credentials
Marketplace refresh tokens are encrypted at rest. Store API keys are scoped to a platform and authorized store.
A concise view of how Muvexa protects store credentials and limits retained API data.
Marketplace refresh tokens are encrypted at rest. Store API keys are scoped to a platform and authorized store.
Logs retain operational metadata such as method, path, platform, status and latency. Request and response bodies are not retained by default.
Authorization mappings, API keys and usage records belong to a tenant. Backend authorization must enforce tenant and role boundaries.
Send responsible security reports to [email protected]. Include affected endpoint, reproduction details and impact without sending live credentials.