We take your data privacy seriously. This policy outlines how we collect, use, store, and protect your personal information when you use our services.
All data in transit is encrypted with TLS 1.3. Data at rest is encrypted using AES-256. We never store passwords in plain text — they're salted and hashed with bcrypt.
We only collect data necessary to provide our services. No unnecessary tracking, no third-party data brokers, and no invasive analytics.
Full compliance with GDPR, CCPA, and other global privacy regulations. You have the right to access, export, and delete your data at any time.
Role-based access control (RBAC) with multi-factor authentication. Every access is logged and audited. Zero-trust architecture across all systems.
24/7 intrusion detection, automated threat response, and regular third-party penetration testing. We have a dedicated security incident response team.
You can export your data in standard formats (JSON, CSV) at any time. No vendor lock-in. We'll help you migrate your data if you choose another provider.
We will never sell your personal data to third parties. Your data belongs to you. Period.
DATA PROTECTED
DATA BREACHES
SECURITY MONITORING
This policy was last updated on May 1, 2026. We'll notify you of any material changes via email.