Authorized sources
Klaviyo uses a read-only private API key. Shopify uses Archet's disclosed standard app permissions.
Five founder-assisted audit slots
Archet runs a bounded, read-only review across the sources you authorize, shows the evidence behind each supported finding, and tells you what to review next. No campaigns, profiles, flows, or store data are changed by the audit.
The 20-second proof
On August 31, 2026, one Archet-controlled production run persisted 14 finding rows: 6 healthy, 3 warnings, 0 critical, and 5 unknown. The report combined four automated probes with configuration and state checks; 14 means finding rows, not 14 independent provider probes.
This is runtime evidence from one controlled run, not merchant validation or evidence of revenue impact. No real-merchant Klaviyo write was executed.
Controlled-production evidence
0--4 sec
On August 31, 2026, one Archet-controlled production run recorded 6 healthy, 3 warnings, 0 critical, and 5 unknown findings.
The evidence version
A roughly 75-second read of the boundaries, provenance, confidence, and action state the short proof compresses.
Klaviyo uses a read-only private API key. Shopify uses Archet's disclosed standard app permissions.
Direct Klaviyo metric and report reads are compared with Shopify order evidence, connector state, and a bounded storefront scan.
Counts and configuration are evidence. A likely cause is labeled as an inference, with confidence and any missing evidence stated explicitly.
The audit names the smallest next review. It does not claim attributed revenue or incremental lift without a defensible baseline.
The audit can monitor and propose. A supported write is separate and remains behind identity, permission, approval, revalidation, and audit controls.
The forwardable audit records findings and evidence. A provider-action receipt exists only after an authorized action is actually executed.
What you receive
How the cohort works
Start with a bounded qualification call. Access is requested only after the audit is a fit.