Data Security & Privacy

We implement rigorous principles and access controls to ensure your data remains confidential, isolated, and protected throughout its lifecycle.

Least Privilege & Access Control

We enforce strict access controls on our infrastructure to prevent unauthorized access to customer databases and resources:

  • Logical Separation: Customer data is isolated logically, ensuring no user can access or view another user's configurations, settings, or database records.
  • Restricted Administrative Access: Internal access to production systems is strictly restricted to authorized operational staff and follows the principle of least privilege.
  • Multi-Factor Control: Administrative logins to system infrastructure require multi-factor verification.

Data Minimization & Retention

We believe in gathering only what is necessary to operate our utilities and process transactions:

  • Minimal Collection: We do not collect or store sensitive financial instruments (like card details) directly; payments are managed securely by our payment partners.
  • Purpose-Driven Access: Access to customer data is limited to what is necessary to operate the service.
  • Scheduled Purges: Accounts flagged for deletion are permanently cleared from all servers after the designated retention period.