Why does my Shopify store look scammy to customers?

A myshopify.com URL and missing policy pages are two of the fastest ways to make a legitimate store look sketchy. Here's how to fix both, and what else actually builds buyer trust.

trustconversiondomainslegal pagesstore credibility

What's going on

You've put real work into your store, but when you send it to friends or run your first ads, someone tells you it feels off or looks like a scam site. Often the culprit isn't the design, it's the address bar. A store still running on the default yourstore.myshopify.com URL, or a domain that doesn't match the store name, reads as unfinished to a wary shopper, especially anyone who's been burned by a dropshipping scam before.

The second most common trigger is missing or obviously copy-pasted legal pages. If there's no Refund Policy, Privacy Policy, Shipping Policy, or Terms of Service linked in the footer, or the ones that exist still have placeholder text in them, that's an immediate red flag for both human visitors and automated fraud screening. Combine that with a non-branded domain and a store can have great products and photos and still get flagged as scammy purely on these structural signals.

This is a recurring pattern in merchant discussions: it comes up whenever someone shares a new store for feedback and gets told, gently or not, that something about the setup is undermining trust before a customer even looks at a product.

Why it happens

Every new Shopify store starts on a myshopify.com subdomain with empty policy pages by default. Those aren't automatic fixes, you have to actively set them up. Merchants racing to launch often go straight to products and theme design and never circle back to connecting a domain or filling in policies, so the store ships in a state that objectively resembles the disposable, here-today-gone-tomorrow storefronts associated with dropshipping scams, even when the merchant and products are completely legitimate.

Shoppers, and the browsers and security tools they use, have also gotten more domain-literate over the past few years, partly because scam sites are so often thrown up on free or generic subdomains. A URL that doesn't match the brand name has become a fast, almost subconscious trust heuristic people apply before they read anything else on the page.

5 ways to fix it

1

Connect a real domain instead of using myshopify.com

In Shopify admin, go to Settings, then Domains. If you already own a domain from a registrar like GoDaddy, Namecheap, or Cloudflare, choose the option to connect an existing domain and follow the DNS instructions Shopify provides. If you don't own one yet, you can buy a domain directly through Shopify for roughly $9 to $20 a year depending on the extension, which comes with free WHOIS privacy and automatic SSL. Once the domain is verified, set it as your primary domain so your storefront, checkout, and order emails all use the branded URL instead of yourstore.myshopify.com.

2

Use Shopify's free policy generator instead of leaving pages blank

Shopify offers a free policy generator, reachable from Settings then Policies in admin, that drafts a Refund Policy, Privacy Policy, Shipping Policy, and Terms of Service using your business name and country. Review the output, adjust anything that doesn't match how you actually operate, and publish it under Settings, Policies so the pages are live and linked in your footer. Having all four policies filled in and easy to find is one of the cheapest ways to look established, and reviewers and payment processors generally expect to see them on a store selling physical goods.

3

Make your business identity verifiable, not just your domain

A branded domain alone won't fix distrust if the About page is empty or there's no way to reach a real person. Add a contact page with an email address and, if you have one, a phone number or live chat. Include a business address if you're a registered entity, and make sure your store name is consistent across your domain, your checkout descriptor, and any social accounts you link to. Shoppers, and increasingly fraud-detection tools, notice when a store's identity doesn't hang together, and that inconsistency reads as thrown together overnight even when the products are entirely legitimate.

4

Add trust signals near the point of purchase

Beyond a real domain and published policies, put reassurance where hesitant buyers actually look: payment method icons, a short shipping and returns blurb on the product page, and genuine customer reviews once you have some. Shopify's checkout shows basic security indicators like a lock icon automatically once you're on a custom domain with SSL, so you don't need to fake that part. Most themes include built-in sections or blocks for trust badges and policy links under the theme editor, so check there before assuming you need to install an app.

5

If the store is genuinely new, be upfront about it

A lot of scammy-looking feedback has nothing to do with design and everything to do with the store being brand new: no reviews, no order history, a generic-sounding name. You can't manufacture a track record, but you can lower suspicion with a short, honest founder note on the About page, real product photos instead of supplier stock images, and fast, personal replies to the first customers who reach out. Domain and policy fixes remove friction; what ultimately builds trust is a store that's clearly run by a real, reachable person.

Bottom line

None of this requires installing an app. A connected custom domain, Shopify's free policy generator, and a genuinely filled-out About and contact page resolve most of what makes a new store look scammy. If you want ongoing help with trust badges or a polished About and contact section without hand-coding theme sections, that's a small theme-customization job, not a dedicated app, and worth handing to a freelance Shopify developer or a build service rather than searching the App Store for it.

Still Stuck?

Browse the rest of the problem library, run a free storefront scan to catch issues like this automatically, or email us and we'll work out a custom solution for it.