How we protect data
Encrypted, isolated, logged
AT REST
- AES-256 encryption in the database
- Separate encryption keys for backups โ a compromised backup gives you nothing without the key
- Your data is logically isolated from every other customer's data
- Every access attempt is logged with timestamp, user ID, and IP address
IN TRANSIT
- TLS 1.3 for all connections, no downgrade allowed
- All APIs require HTTPS โ plain HTTP is redirected
- Certificate pinning in client apps
- No unencrypted data moves between services
AT ACCESS
- MFA mandatory for all users, no exceptions
- Role-based access โ a CFO sees different data than an AP clerk
- Sessions time out after 30 minutes of inactivity
- Every action is logged. We can tell you exactly who looked at what, and when
ON DELETION
- You own your data. You can delete on demand.
- Automatic deletion 90 days after your subscription ends
- Deletion is permanent โ overwritten on disk, not soft-deleted
- We provide a compliance confirmation on request
Data access
What we see. What we don't
We see what we need to find billing drift. Nothing more.
Questions