Skip to main content

Security & Compliance

Your data security is our top priority. Learn about the measures we take to protect your information.

Data Encryption

Every request is encrypted in transit with TLS. OAuth tokens and other credentials are encrypted with Fernet before they are stored.

Your data, your control

Email support@aibrify.com at any time to export or delete the personal data we hold about you. We answer within a business day and delete within 30 days.

No certifications claimed

Aibrify has not completed a SOC 2 or ISO 27001 audit and does not claim one. This page lists the controls we actually run: encryption in transit, encrypted credentials, access control and least-privilege integrations.

Infrastructure Security

Hosted on a dedicated cloud server in the United States. Every request uses HTTPS, the database is not exposed to the internet, and application containers are isolated from each other.

Access Control

Role-based access control with per-tenant isolation: users reach their own data and nothing else. Staff access to production is limited to the people who run it.

Data Retention

We retain your data only as long as your account is active. Upon account deletion, all personal data is permanently removed within 30 days, with analytics data anonymized for aggregate insights.

Vulnerability Reporting

We welcome responsible security disclosures. If you discover a vulnerability, please report it to security@aibrify.com. We aim to acknowledge reports within two business days and fix critical issues first.

OAuth & API Security

All API endpoints are authenticated via JWT tokens with short expiration. OAuth integrations use the principle of least privilege, requesting only necessary platform permissions.

For security-related inquiries, contact security@aibrify.com