Learn about the comprehensive measures we take to protect your data.
Last Updated: January 1, 2025
All data transmitted between your browser and our servers is encrypted using industry-standard SSL/TLS protocols.
Your sensitive data is encrypted at rest using AES-256 encryption, ensuring protection even if storage is compromised.
Multi-factor authentication, secure password hashing with bcrypt, and OAuth 2.0 integration for enhanced account security.
Continuous monitoring and automated threat detection systems identify and respond to security incidents in real-time.
Role-based access control (RBAC) and principle of least privilege ensure team members only access what they need.
Quarterly penetration testing and annual third-party security audits validate our security posture.
Full compliance with EU data protection regulations
Adherence to California consumer privacy laws
We believe in working with security researchers to identify and fix vulnerabilities. If you've discovered a security issue, please report it responsibly.
Note: We do not currently offer a bug bounty program, but we deeply appreciate responsible disclosure and will acknowledge your contribution.
While we implement robust security measures, your account security also depends on your actions:
In the unlikely event of a security incident:
Our security team identifies and assesses the incident within minutes using automated monitoring.
Immediate action to contain the incident and thorough investigation to determine scope and impact.
Affected users are notified within 72 hours with clear information about the incident and recommended actions.
Complete resolution with additional security measures implemented to prevent similar incidents.
Have questions about our security practices? Our security team is here to help.
Contact Security Team →Discovered a security issue? Report it to us responsibly.
Report Vulnerability →