Shopify Security FAQs

Because your data was accessed impermissibly, we wanted to make you aware of this event.

What happened? 
Two rogue members of Shopify's customer support team obtained customer information from a small number of stores using their platform, including TooTimid. The individuals' access was immediately revoked, and the incident was promptly reported to law enforcement.

Who is Shopify?
Shopify is an e-commerce platform that powers over 1,000,000 websites across the world.  

What Information Was Involved?
It’s important to know that your credit card information was never compromised.  It was and is still safe to place your orders.  

The data involved includes basic contact information, such as email, name, and address, as well as order details, like products and services purchased. Shopify has informed us that complete payment card numbers or other sensitive personal or financial information were not part of this incident.

Shopify has also shared that TooTimid is not the only website that was impacted by this incident, so you may be receiving notifications from other companies that you've shopped with online.

What actions have been taken in response?
Since becoming aware of the incident, Shopify began a thorough investigation of the incident, immediately suspended the individuals’ access to their network, notified law enforcement, and engaged a third-party digital forensics firm to conduct an independent investigation.  They are taking steps to help prevent this type of incident from recurring in the future.

When did this happen?
Although Shopify just notified us, they state this incident happened on April 10, 2020. 

Is it safe to shop at TooTimid?
Although their investigation is ongoing, Shopify has assured us that they have implemented additional controls designed to help prevent this type of incident from recurring in the future. Based on the investigation to date, we are confident that our customers can continue to shop on our website. If you have any further questions you can contact us at helpdesk@tootimid.com.

Has this incident been reported to law enforcement?
Yes. Shopify has informed us that it has reported the incident to the FBI and other international agencies and is working with law enforcement in their investigation of this incident. 

Do you have additional questions?
Our small staff in Amherst, NH will do our absolute best to respond to all requests in a timely manner with the information Shopify has provided to us as best as we can.