← Back to HomeSecurity
Our Security Commitment
PostFlow AI takes the security of your data seriously. We implement industry-leading security measures to protect your personal information and ensure the confidentiality, integrity, and availability of our services.
Data Protection
- Encryption in Transit: All data transmitted to and from our servers is encrypted using TLS 1.3 or higher.
- Encryption at Rest: Sensitive data is encrypted at rest using AES-256 encryption.
- Access Controls: We implement strict access controls and authentication mechanisms to ensure only authorized personnel can access your data.
- Regular Audits: We conduct regular security audits and vulnerability assessments to identify and address potential risks.
Infrastructure Security
- Cloud Infrastructure: We use Supabase for secure, encrypted database management with automatic backups.
- DDoS Protection: Our infrastructure includes DDoS protection to ensure service availability.
- Firewalls: We maintain firewalls and intrusion detection systems to monitor and prevent unauthorized access.
- Monitoring: Our systems are continuously monitored for suspicious activity.
Password Security
Passwords are hashed using industry-standard algorithms and are never stored in plaintext. We encourage users to:
- Use strong, unique passwords
- Enable two-factor authentication when available
- Never share your password or account credentials
- Change your password regularly
Third-Party Security
We carefully vet all third-party services we use. Our partners including Supabase, OpenAI, and Stripe maintain their own stringent security standards and are SOC 2 certified or equivalent.
Reporting Security Issues
If you discover a security vulnerability in PostFlow AI, please email us at security@postflowapp.io with details. We take all security reports seriously and will investigate promptly. Please do not disclose the vulnerability publicly until we have had time to address it.
Your Responsibility
While we implement strong security measures, you are also responsible for maintaining the security of your account. This includes keeping your password confidential, logging out when using shared computers, and monitoring your account for suspicious activity.