Security and compliance you can trust
We take data protection seriously. From encryption to transparent policies, we've built security and privacy into every aspect of our platform.
-
GDPR Compliant
-
We follow GDPR requirements. You can access, export, or delete your data at any time. We document how we process your information and retain it only as long as needed.
-
AES-256 Encryption
-
All sensitive data is encrypted at rest and in transit using AES-256 encryption. Your information is protected whether it's stored in our database or being transmitted over the network.
-
No Training on Your Data
-
We never use your data to train models, and our AI providers are configured with zero-retention policies so your information isn't stored or reused.
-
UK Data Storage
-
All data is stored in secure UK data centres in the London region. Third-party processing happens within the EU/EEA with appropriate safeguards.
-
Transparent Policies
-
We publish our privacy policy, data retention policy, terms of service, and record of processing activities. Everything is documented and publicly accessible.
-
Secure Payments
-
All payments are processed through Stripe. We never store your card details on our servers - payment information is handled entirely by Stripe's PCI-compliant infrastructure.
-
Automated Backups
-
Your data is automatically backed up every 24 hours with 7-day retention. Backups are stored across multiple geographic locations to ensure data availability and disaster recovery.
-
Real-Time Monitoring
-
We monitor our systems 24/7 for security incidents and errors. Any suspicious activity or system issues are detected immediately so we can respond quickly.
-
Responsible Disclosure
-
We maintain a vulnerability disclosure policy and take security reports seriously. Found a security issue? We want to hear from you.