I will perform a full shopify security audit and vulnerability report


About this gig
Is your Shopify store actually secure or just hoping nothing goes wrong?
Most store owners assume Shopify handles everything. It doesn't. Shopify secures the platform. You are responsible for your admin access, staff permissions, installed apps, theme code, and customer data. That's exactly where most breaches happen.
I will run a complete, manual security audit of your store covering:
- Admin & staff access MFA enforcement, permission levels, collaborator access review
- App audit overprivileged apps, abandoned installs, suspicious API scopes
- Theme & code review orphaned scripts, injected code, outdated vulnerabilities
- Payment & fraud settings payout controls, AVS/CVV rules, risk configuration
- Customer data & privacy data exposure risks, cookie compliance, retention gaps
- Checkout security PCI compliance gaps, third-party script risks
What you get:
- Full written audit report (PDF)
- Priority-ranked list of vulnerabilities found
- Clear fix instructions for every issue no jargon
- Honest verdict: critical, moderate, or low risk per area
Ready to know exactly where your store is exposed?
Message me before ordering so I can confirm your store type.
Respect third-party rights
Please be aware that it is against Fiverr's policies for sellers to include themes, templates, or any other elements that infringe third-party rights or applicable laws in the delivered work. Read more about in our Guide to Responsible Digital Creation.
Get to know Victor Stephen
Performance Marketer, AI Builder, Shopify Security and VA
- FromNigeria
- Member sinceJul 2026
- Avg. response time1 hour
Languages
Yoruba, English, French
FAQ
Do I need to give you admin access to my store?
Not always — most of the audit can be done with a limited collaborator access or staff account. I'll tell you exactly what level of access is needed before we start.
Will this disrupt my live store?
the audit is read-only. Nothing is changed without your explicit approval.
How is this different from a free automated scanner?
Automated scanners only check surface-level items like SSL. I manually review your app permissions, staff access, theme code, checkout settings, and fraud configuration — things no scanner can read.
What if you find serious vulnerabilities?
The Standard package delivers the findings. The Premium package includes actually fixing the critical issues, not just reporting them — that's where most buyers upgrade once they see the report.

