Security at TrueCerta

Trust is at the core of credential verification. We take security seriously and implement industry best practices to protect your data.

How We Protect Your Data

Encryption at Rest & Transit

All data is encrypted using AES-256 at rest and TLS 1.3 for data in transit.

EU Data Centers

Your data is stored in secure, GDPR-compliant data centers located in the European Union.

Secure Authentication

Industry-standard authentication with support for magic links and multi-factor authentication.

Access Controls

Role-based access controls ensure users only see data they're authorized to access.

Audit Logging

Comprehensive audit logs track all certificate issuances, revocations, and verifications.

Regular Security Audits

We conduct regular security assessments and penetration testing to identify vulnerabilities.

Secure Infrastructure

Hosted on Vercel & Supabase

Enterprise-grade infrastructure with automatic scaling and DDoS protection.

Database Security

PostgreSQL with row-level security policies ensuring data isolation.

Automated Backups

Daily automated backups with point-in-time recovery capability.

99.9% Uptime SLA

High availability architecture with redundancy across multiple zones.

Compliance & Certifications

GDPR Compliant
SOC 2 Type II (In Progress)
ISO 27001 (Planned)

Responsible Disclosure

We value the security research community. If you discover a security vulnerability, please report it responsibly. We commit to working with you to understand and resolve the issue quickly.

Report a Vulnerability

Contact: security@truecerta.com