Our Commitment to Your Safety & Security
Your trust is our top priority. We protect your data, your payments, and your experience with layered security controls, respected third-party providers, and continuous improvements.
What We Do to Protect You
- Encrypted browsing (HTTPS): All pages load over modern TLS to prevent interception and tampering.
- Hardened infrastructure: Web application firewall (WAF), bot/attack rate-limiting, and malware scanning to block common threats.
- Proactive updates: We regularly update the core engine, themes, and apps to patch vulnerabilities quickly.
- Principle of least privilege: Tight access controls and role-based permissions for administrators and service accounts.
- Secure backups: Encrypted, versioned backups with tested restore procedures.
- Minimal data collection: We only request what’s needed to process your order or provide service and retain it for as short a time as practical.
- Monitoring & alerting: Continuous monitoring for suspicious activity and immediate investigation of anomalies.
Payment Security
We partner with trusted payment processors (e.g., PayPal, major credit card gateways) who are PCI DSS compliant. Your card details are processed directly by these providers and are not stored on our servers.
- All payment pages use HTTPS.
- We support secure payment methods and strong fraud screening by our gateways.
- Receipts and confirmations exclude sensitive card data.
Data Privacy
We respect your privacy and handle personal information responsibly.
- We collect only what we need to fulfill your order, support you, and meet legal obligations.
- We don’t sell personal data. Limited sharing occurs only with essential service providers (e.g., payments, shipping).
- You can request access, correction, or deletion of your data, subject to applicable law.
Read the full policy: Privacy Policy.
Account Security
- Password protection: User passwords are stored using one-way hashing by WordPress.
- Best practices: We encourage long, unique passwords and password managers.
- Session safety: Avoid public devices; always log out after use.
Site Reliability & Uptime
- Global CDN and caching for fast, consistent performance.
- Health checks and uptime monitoring with rapid remediation.
Report a Security Concern
If you notice anything suspicious, please tell us immediately. Include:
- Page URL(s) and a brief description of the issue
- Screenshots or error messages
- Steps to reproduce the problem
Contact: Contact Form
Response target: We aim to acknowledge reports within 1 business day and resolve urgent issues as quickly as possible.
Responsible Disclosure
We appreciate ethical security research. Please avoid actions that could harm users or data. Test only against your own account, don’t access others’ data, and give us a reasonable time to fix any issues before public disclosure. We’ll keep you updated on progress.
Simple Steps You Can Take
- Use a unique, long password for your account.
- Keep your browser and device updated.
- Verify you’re on the correct domain (look for the lock icon and our URL).
- Contact us directly if anything looks out of place.