[Note: I apologize if my post was not clear or incorrect place.]
Hey everyone!
I wanted to share an important information that I recently came across regarding the use of some free apps for Shopify Facebook Pixel.
Risks of exposing Facebook Pixel Access Token ![]()
Let me share a personal experience to highlight this point. A while ago, I had the opportunity to try out a free app for Facebook Pixel on Shopify. Initially, everything seemed fine, but after approximately a month of using the app, I started noticing unusual data and fake events being recorded. Concerned about this unexpected behavior, I decided to investigate further.
When inspecting the source code of my website’s front-end (by pressing Ctrl+U), I was shocked to discover that my Facebook Pixel token was exposed in the theme’s code. (please see my screenshot)
This was a significant security breach, as it allowed unauthorized access to my pixel data. I immediately removed the app and took steps to secure my Facebook Pixel token. Experiencing such a situation was terrible and awful, highlighting the risks associated with using it that may not prioritize data security.
I would like cc for @Shopify_77 could you please review my case and this app? I didn’t know why this app can have a badge “Built for Shopify”???
![]()

