Legal
Security Policy
Last updated August 5, 2026
This page is a working draft describing our actual current practices, provided as a starting point rather than finished legal advice. It hasn’t been reviewed by a lawyer — have counsel review it before relying on it for compliance.
Payment Security
We use Shopify Checkout for all payments. Your card details are entered directly into Shopify’s hosted checkout page and never pass through our servers — this keeps us out of direct PCI-DSS scope for cardholder data, because we never handle it. Shopify is independently PCI-DSS Level 1 certified.
Connection Security
All traffic to trenzhome.com is served over HTTPS. We don’t support unencrypted connections.
Account Security
Account sign-in isn’t live on this site yet, so there are currently no passwords or account credentials for us to store or secure. When accounts launch, we’ll update this page with the specifics of how credentials are protected.
Data We Don't Have
Because we don’t operate customer accounts, order history, or stored payment methods today, there’s a correspondingly small amount of sensitive data at rest on our systems. See our Privacy Policy for exactly what does and doesn’t exist.
Reporting a Security Issue
If you believe you’ve found a security vulnerability affecting this site, please report it to hello@trenzhome.com rather than disclosing it publicly. We don’t currently operate a formal bug bounty program, but we take reports seriously and will respond.