Trust
Knowing who you are trading with.
Most of what makes a trade go badly is not knowing enough about the person on the other end. Reputation here comes from completed sales and resolved disputes, it follows a seller across every part of PackFresh, and you can see it before you commit.
How we treat it
What we hold ourselves to
- 01
Standing is earned, not bought
Reputation comes from completed transactions and resolved disputes. It is not a badge we sell and there is no way to top it up.
- 02
One reputation, everywhere
A seller carries their record across every part of PackFresh. Nobody gets a fresh start by moving to a different corner of the site.
- 03
Estimates are labeled as estimates
A price we are confident about and a price we are guessing at look different on screen. You should not have to work out which one you are looking at.
- 04
Everything leaves a trail
Orders, holds and payouts can be reconstructed after the fact. If something goes wrong we can show you what happened rather than asking you to take our word for it.
- 05
Rules change with notice
Anything that changes how you buy, sell or get paid gets announced before it takes effect. Nobody should discover a policy change from a failed transaction.
Your data
What we hold, and what we do not
We do not hold
- Retailer credentials. Scout runs on your own machine, in your own session.
- Payment card details. Payments run through a processor, not through us.
- A separate account per product. One PackFresh login works everywhere, so there is no second copy of your details to keep in step or to lose.
We do hold
- What you own, if you have told us: your inventory and lists.
- What you have transacted, because auditability requires it.
- What you have asked for, so we can go and find it.
What you own is yours. Completed sales feed the prices everyone sees, which is how pricing gets better. But your collection is not something we sell, and it is not something we would sell. More on where we draw lines.
Security
Reporting something
Found a vulnerability? Please report it to us privately first, so we have a chance to investigate and fix it before it is public, and we will work through it with you. Reporting in good faith will never get you a legal threat from us.
There is no bug bounty, SOC 2 report or formal compliance program yet. If you need one for a partnership, write to us and we will talk about what it would take.
The same contact is published at /.well-known/security.txt so scanners and automated tooling can find it without reading this page.