No. PABEL PAY does not hold merchant funds. It collects payment details, verifies payments and notifies your website. Money moves directly through the payment method or gateway you configure.
You do, inside your own website. PABEL PAY only reports the payment status through a signed webhook; order approval, rejection and fulfilment always stay on your website.
No. Only an opaque order ID, the amount and currency are sent. Product names, carts, SKUs and inventory never leave your website.
Verify the webhook signature (HMAC SHA-256) and, if you want extra certainty, call the Verify Payment API. Never trust the success-page redirect on its own.
Manual methods (bKash, Nagad, Rocket, Upay, bank) and automatic gateways such as UddoktaPay, added through the plugin system.
By default 60 minutes; the platform administrator can change this.