Activates and delivers.
Box manages licence activation, approved software delivery and configured public-domain connections.
Commerce
Intelligence
Infrastructure
Why institutions choose Box
Keep the brand, records, rails, and merchant relationship.
Start here
By merchant activity
By deployment
See it running
OlivePay licensed Box. The tills are already in the field.
Box architecture
Box supplies licensed software. Your organisation operates the deployment, connects providers and owns the commerce data.
The line between licensed software and the estate that runs it determines data ownership, provider responsibility and how merchant surfaces are composed.
Box manages licence activation, approved software delivery and configured public-domain connections.
Your team runs the infrastructure, database, access controls and connected provider implementations.
The merchant experience is composed from the packages and tier assigned by the institution.
Four parts keep the relationship legible from installation to a public merchant experience.
Products, customers, orders, payments and settlements compose through licensed packages.
The merchant workspace exposes the capabilities installed and assigned to that merchant.
Customer-facing and staff-facing interfaces use the same deployment and commerce record.
Box validates the licence and delivers approved releases without hosting the institution’s merchant database.
Operational responsibilities stay explicit across data, deployment and public delivery.

Commerce records and institution configuration remain inside the operated deployment.

Payments, messages and external services bind through implementations supplied by the operator.

Approved versions arrive as a coherent package set rather than independent surface updates.

Configured public domains connect visitors to the website surface without making Box the merchant backend.
Continue into the detailed boundaries and workflows.
See the security model and responsibility split.
COMPLIANCEReview the self-hosted compliance boundary.
TESTINGInspect the package graph and API before connecting live providers.
RELEASESReview versioned product updates and operational notes.
Start with the boundary your institution needs to preserve.