Your brand data is sensitive. We treat it that way.
All data is encrypted in transit (TLS 1.3) and at rest (AES-256). API keys and credentials are stored in secure vaults, never in source code.
Your brand data is isolated using Supabase Row Level Security policies. No user can access another organization's data. Ever.
We run on Supabase and Vercel, both SOC 2 Type II certified. Our architecture inherits their compliance guarantees.
Every API endpoint is protected by sliding-window rate limiting to prevent abuse, brute-force attacks, and cost overruns.
Questions about security? Get in touch · ← Back to home