Skip to content

Security

How we protect business information.

Les nostres pràctiques publicades de protecció de dades, gestió d'accés i funcionament dels nostres productes.

Data protection

Security across the product.

01

Encryption in transit.

All traffic between clients and our services travels over TLS 1.2 or higher. We do not operate public endpoints sense encryption.

02

Encryption at rest.

Databases backing our products store information encrypted with AES-256, managed by the infrastructure provider (Supabase on AWS).

03

Aïllament del llogater.

SynvaxisApp és multi-tenant: tots els negocis operatius per a la seva pròpia isolada dataset, enforced at la database level mitjançant Row-Level Security policies.

04

Authentication and authorization.

Sessions es basen en JWT tokens issued by Supabase Auth. Access a resources internals follows la principle of least privilege with explicit rols.

05

Automatic backups.

Daily backups managed by the database provider, with standard retention. Backups never leave the operating region.

06

Data residency.

Primary infrastructure operates in United States regions. We do not transfer customer data outside that perimeter without explicit notice.

Responsible disclosure

Report a vulnerability.

Per find a vulnerabilitat en SynvaxisApp or another Synvaxis LLC service, contact us privately s description de l'essoue i les steps to reprodueix it.

Send a report