logo Straight to Inbox
Security

Your data is safe with us

Enterprise-grade security built into every layer of the platform.

Built secure from the ground up

Every feature is designed with your security in mind.

Encryption at Rest

All data encrypted using AES-256. Database credentials, API keys, and payment gateway tokens use Laravel's encrypted storage.

Encryption in Transit

All connections secured with TLS 1.3. HTTPS enforced across all endpoints. API traffic encrypted end-to-end.

GDPR Compliance

Full GDPR support with data export, right to erasure, consent tracking, and data processing agreements.

Access Control

Role-based access with organization-level permissions. Multi-factor authentication support. Session management with automatic expiry.

Infrastructure

Hosted on enterprise cloud infrastructure with automated backups, redundancy, and 99.9% uptime SLA.

Payment Security

PCI-DSS compliant payment processing via Stripe, PayPal, and other certified providers. We never store raw card numbers.

Standards we meet

Our platform is built to the highest industry standards.

GDPR
Compliant
SOC 2
In Progress
TLS 1.3
Enforced
AES-256
Encryption
PCI-DSS
Via Partners

How we handle your data

Transparency is core to how we operate.

What we collect

  • Subscriber data you import or collect via forms
  • Email engagement metrics (opens, clicks, unsubscribes)
  • Campaign content and automation rules
  • Account and billing information

What we don't do

  • Sell your data or subscriber lists
  • Share data with third parties for marketing
  • Mine your subscriber lists for insights
  • Store raw payment card numbers

Data residency

Your data is stored in your chosen region. We are actively building regional database support so your subscribers' data stays in the geography you specify.

Regional sharding — coming soon

Responsible Disclosure

Found a vulnerability? We take security reports seriously and respond promptly. Please contact our security team directly.

security@straighttoinbox.com

Questions about security?

Our team is happy to answer any questions about our security practices, compliance, or data handling.