Security & Data Access
Last updated: January 2026
Banshield takes data protection and security seriously. This page explains how we access Stripe data, what we can and cannot do, and the measures we take to protect user information.
1. Read-Only Stripe Access
Banshield connects to Stripe accounts using Stripe’s official API with strictly read-only permissions.
This means:
We can observe account data and signals
We cannot modify transactions, payouts, balances, customers, or settings
We cannot initiate payments, refunds, or transfers
We cannot change account configurations or capabilities
You retain full ownership and control of your Stripe account at all times.
2. What Data Banshield Can Access
When authorized by the user, Banshield may access observable Stripe account data such as:
Payment and transaction activity
Dispute and refund metrics
Payout and balance status
Account capability and status indicators
Historical activity trends
Banshield does not access sensitive card data, full payment credentials, or customer authentication details.
3. What Banshield Cannot Access
Banshield does not have access to:
Stripe’s internal risk scores or enforcement systems
Manual review queues or decision-making processes
Private communications between Stripe and account holders
Any data not explicitly exposed through Stripe’s API
4. Data Usage
Data accessed through Stripe is used solely to:
Monitor account activity
Analyze observable risk signals
Generate alerts and insights
Provide visibility into account conditions over time
Data is never sold and is not used for advertising or marketing purposes.
5. Data Storage & Retention
Data is stored only as long as necessary to operate the Service
Historical data may be retained to support trend analysis
Users may disconnect their Stripe account at any time, which immediately stops data access
Data deletion requests can be made via support
6. Security Measures
Banshield employs reasonable technical and organizational safeguards, including:
Encrypted connections (HTTPS/TLS)
Restricted access controls
Secure infrastructure and hosting providers
Principle of least privilege for internal access
While no system can guarantee absolute security, Banshield follows industry best practices to protect user data.
7. User Control
Users can:
Revoke Stripe API access at any time through their Stripe dashboard
Cancel their Banshield account at any time
Request deletion of stored data
Revoking access immediately stops all monitoring.
8. Independent Third-Party Service
Banshield is an independent third-party platform and is not affiliated with, endorsed by, or operated by Stripe.
Access to Stripe data is provided only through permissions explicitly granted by the user.
9. Responsible Use
Banshield is designed to provide informational insights, not to circumvent Stripe policies or enforcement mechanisms. Users remain responsible for complying with Stripe’s terms and applicable laws.
10. Updates to This Page
This Security & Data Access page may be updated periodically to reflect changes in practices or technology. Continued use of the Service indicates acceptance of the updated content.
11. Contact
For security or data-related questions: