Make monday.com work with Microsoft 365 & SharePoint →
Stripe Integration Plus logo

Stripe Integration Plus

Fantasy Media LTD

115 installs, since April 10, 2025.   23 installs/month.   Updated July 31, 2025.

Hosted by monday.com Paid No touch

Sync customers, payments & invoices-streamline your business!

Stripe Integration Plus solves all the gaps in the existing native solution and allows you to sync your data across both platforms - Sync customers, payments and invoices in one place & streamline your work.

Addresses the shortcomings of the existing solution

  • Supports all of Stripe’s main entities - Customers, Payments, Invoices.
  • Keeps your data in sync.
  • Supports subitems.
  • Flexible & robust triggers


All your customer data & work in one place.

View customer information, including subscriptions, invoice and payment history, within monday.com to improve sales opportunities and bring full context to each task.

Additional use cases

  • Project cost tracking - Sync invoice amounts to subitems so you can better track project costs for a clearer picture of profitability.
  • Renewal Management - When a subscription is up for renewal, set up tasks to remind your team to check in with the customer, address potential issues, or explore upselling opportunities.
  • Follow up on payments and invoicing - Easily track payments, followup when needed and set reminders.
  • Churn prevention: If a failed payment comes through, assign an item to your customer success team so they can proactively reach out to the client and address payment issues.


Enterprise Grade Security

Stripe Integration Plus is hosted on “monday code” solution, native hosting by monday.com and is upheld to stringent enterprise-level compliance and security measures, providing monday.com customers with the most secure solution available.

We’d love to hear your thoughts! If you want to give us feedback and help us improve the app, you can contact us directly at hello@fantasymedia.io. Either way, we’ll get back to you very soon!

Security & Compliance

Security

Does the developer periodically perform penetration testing?

No
Our code runs entirely on monday code, which is penetration-tested as part of monday.com’s SOC 2 and ISO 27001 programmes; we therefore do not run separate tests.

Does the developer have a dedicated security and privacy point of contact for such issues or questions?

Yes
Yes. All security or privacy queries can be sent to security@fantasymedia.io

Does the app restrict redirects and forwards only to approved destinations, or show a warning when redirecting to potentially untrusted content?

Yes
The app redirects only during the OAuth consent flow; users see monday.com’s consent page and can cancel at any time.

Does the app protect against mass parameter assignment attacks?

Yes
The app accepts requests only from monday.com and Stripe. Each endpoint validates the origin, enforces a fixed schema, and discards unexpected fields, preventing mass-assignment attacks.

Does the app perform encoding and sanitization on all user supplied parameters to protect against Cross-Site Scripting?

Yes
All user input is encoded through monday UI components, and server-side sanitization is applied before processing.

Does the developer protect all state-changing actions against Cross-Site Request Forgery (CSRF)?

Yes
Every state-changing call must include a JWT issued by monday.com that is valid for five minutes; we verify the token before executing the request.

Does the developer have mechanisms to notify monday.com in case of a security breach?

Yes
We will inform monday.com’s security team within 24 hours of any confirmed incident.

Does this developer have a process for installing application-level updates and security patches for the service (such as software packages and databases)?

Yes
Monday code handles runtime and OS patches automatically; we review dependency advisories weekly and redeploy with the latest versions.

Compliance

Is the app certified with the information security standard ISO/IEC 27001:2022?

No
The app is hosted on monday code, which is compliant with ISO/IEC 27001:2022.

Is the app compliant with the Health Insurance Portability and Accountability Act (HIPAA)?

No
The app is hosted on monday code, which is compliant with HIPAA requirements.

Is the app certified with System and Organization Controls (SOC 2 or SOC 3)?

No
The app is hosted on monday code, which maintains SOC 2 and SOC 3 certifications.

Is the app compliant with the General Data Protection Regulation (GDPR)?

Yes
Yes. We are compliant with GDPR.

Data

Does the app send any data outside of monday.com? If yes, indicate whether the data is customer-submitted (e.g., board names, item names, doc content) or non-customer-submitted (e.g., account ID, board ID, user ID).

Yes
Yes. Non-customer identifiers (account ID, user ID, board ID) are sent to Stripe only as part of the HTTPS request that sets up the webhook; we do not store these identifiers.

Where does the app store logs data?

monday
Runtime logs are kept in monday code’s managed logging service.

Where does the app store the app data?

monday
Only subscription metadata—account ID, subscription ID, start and renewal dates, quota—is stored, encrypted at rest, in monday code key-value storage.

Does the developer ensure application logs do not contain secrets or personally-identifiable information (PII)?

Yes
Yes. Exclusion filters remove tokens, secrets, and any PII before logs are written. Internal log-review audits are conducted every 30 days to verify compliance.

Is customer data segregated from the data of other customers (for example logically or physically)?

Yes
The app stores no monday board or item data outside monday.com. Subscription metadata is logically partitioned by account ID in our database and is also isolated within monday.com’s secure storage, ensuring each customer’s information remains separate.

Privacy

Does the developer enforce multi-factor authentication on employees access to systems which may process customer data?

Yes
Yes. All employees with access to internal systems must sign in with Google Workspace MFA.

Does the developer protect access to customer data based on the principle of least privilege?

Yes
The app stores no monday board or item data. Access to the limited subscription metadata we keep is controlled by role-based permissions and granted only to authorised engineers, adhering to the principle of least privilege.

Reviews

May 26, 2025

K: This is exactly what we needed!

Historical data

Installation history

We have data for December 28, 2024 onwards only. Collected sometime after 00:00 UTC daily.

Total number of installs

Change in total number of installs in last 7 days

Compares the number of installs on each date with 7 days previously:

Max
Min
Current

Change in total number of installs in last 30 days

Compares the number of installs on each date with 30 days previously:

Max
Min
Current

Change in total number of installs in last 90 days

Compares the number of installs on each date with 90 days previously:

Max
Min
Current

Ratings history

Categories history

Each of the following is a yes/no answer, so the graphs show 1 for yes, and 0 for no.

In "Featured" category?

In "Editor's choice" category?

In "Trending this week" category?

App metadata

ID: 10000777App ID: 10233698Listing updated: July 29, 2025