Security Policy
Last Updated: October 24, 2026
1. Account Security
We enforce strict password requirements and strongly encourage the use of Two-Factor Authentication (2FA) for all accounts. We actively monitor for suspicious login attempts and new device access, sending email alerts when necessary.
2. Infrastructure Security
All communication with our servers is encrypted using industry-standard TLS. Our databases and internal APIs are isolated within virtual private clouds (VPCs) with strict firewall rules and access management.
3. Vulnerability Disclosure
We encourage security researchers to responsibly disclose any vulnerabilities they find in our systems. If you believe you have discovered a security issue, please contact our security team through our support channels.
4. Incident Response
In the event of a security breach, we have an incident response plan to quickly mitigate the threat, secure our systems, and notify affected users in accordance with applicable data protection laws.