Security

Your data security is our top priority. Here is how we protect your information.

End-to-End Encryption

All data is encrypted in transit using TLS 1.3 and at rest using AES-256 encryption.

Secure Infrastructure

We use Supabase and Railway for hosting, both SOC 2 Type II certified providers with enterprise-grade security.

Regular Security Audits

We conduct regular security assessments and penetration testing to identify and fix vulnerabilities.

Access Controls

Role-based access controls ensure team members only see data they need. 2FA available for all accounts.

Data Protection

All customer data is stored in isolated databases with strict access controls. We use Supabase Row Level Security (RLS) policies to ensure data isolation between accounts.

Authentication

We use JWT tokens for authentication with automatic expiry. Passwords are hashed using bcrypt with a cost factor of 12. We support 2FA via authenticator apps for enhanced security.

Compliance

  • GDPR: Full compliance with EU data protection regulations
  • PCI DSS: Payment data handled by Stripe (PCI Level 1 certified)
  • SOC 2: Our infrastructure providers are SOC 2 Type II certified

Incident Response

We have a documented incident response plan. In the unlikely event of a security breach, affected customers will be notified within 72 hours.

Data Backup

Automated daily backups with 30-day retention. Point-in-time recovery available for the last 7 days.

Report a Vulnerability

If you discover a security vulnerability, please report it to security@pulseanalytics.co.uk. We take all reports seriously and will respond within 48 hours.