Skip to main content

Data Protection

All client and case data is protected with enterprise-grade encryption and access controls.

Encryption

  • At Rest: AES-256 encryption for all stored data
  • In Transit: TLS 1.3 for all network communications
  • Backups: Encrypted multi-region replication

Access Controls

  • Role-based access control (RBAC)
  • Multi-factor authentication (MFA)
  • Session management
  • IP whitelisting (enterprise)

Data Retention

  • Active cases: Unlimited retention
  • Closed cases: 7 years default
  • Deleted data: 30-day recovery period