Security & Compliance

Your data security and privacy are our top priorities. We employ industry-leading security measures to protect your information.

Certifications & Compliance

We maintain strict compliance with industry standards and regulations

SOC 2 Type II

Audited security controls and processes

Compliant

GDPR

European data protection regulation

Compliant

CCPA

California Consumer Privacy Act

Compliant

PCI DSS

Payment card security via Stripe

Compliant

How We Protect Your Data

Multiple layers of security protect your information at every step

Data Encryption

All data encrypted in transit (TLS 1.3) and at rest (AES-256)

  • HTTPS everywhere with modern TLS
  • Encrypted database storage
  • Secure file storage in Google Cloud
  • Zero-knowledge architecture where applicable

Infrastructure Security

Enterprise-grade cloud infrastructure with Google Cloud Platform

  • Multi-region redundancy
  • DDoS protection
  • Regular security updates
  • Automated backups

Access Controls

Strict authentication and authorization protocols

  • Firebase Authentication
  • Multi-factor authentication available
  • Role-based access control
  • Session management and timeout

Monitoring & Alerts

Continuous monitoring for security threats

  • 24/7 system monitoring
  • Real-time security alerts
  • Intrusion detection systems
  • Regular security audits

Data Protection & Privacy

Transparency in how we handle your data

What Data We Collect

  • Account information (name, email)
  • Property search queries
  • Payment information (via Stripe)
  • Usage analytics

How We Protect It

  • Encrypted storage and transmission
  • Access controls and authentication
  • Regular security audits
  • Compliance with privacy regulations

Your Rights

  • Access your data anytime
  • Request data deletion
  • Export your data
  • Opt out of marketing

Read our full privacy policy for complete details

Security Best Practices

Ongoing commitment to security excellence

Regular Audits

Third-party security audits conducted annually

Vulnerability Testing

Continuous scanning and penetration testing

Incident Response

Documented procedures for security incidents

Employee Training

Mandatory security awareness training

Secure Development

Security-first development practices

Data Retention

Clear policies for data retention and deletion

Payment Security

We use Stripe, a PCI DSS Level 1 certified payment processor, to handle all payment information. We never store your credit card details on our servers.

Secure Processing

All payments encrypted and secure

No Storage

Card details never stored by us

Fraud Detection

Advanced fraud prevention

PCI Compliant

Highest security standards

Security Questions or Concerns?

Our security team is here to help. Contact us if you have any questions about our security practices.