- Our application is hosted on reputable cloud providers with strong physical and network security.
- Access to production systems is limited to a small number of authorized team members and is logged and audited where possible.
- Customer data is logically separated so one customer cannot access another customer's information.
- All traffic between your browser, the support widget, and our servers is encrypted in transit using HTTPS/TLS.
- Data at rest is stored on encrypted disks managed by our cloud providers.
We store only the data needed to provide the service, such as:
- Account details (name, email, company, website)
- Knowledge base content you add
- Support conversations between your visitors and the bot
- Basic usage and performance metrics
Payment card information is handled directly by our payment provider and never touches our servers.
Monitoring & Incident Response
- We monitor the system for errors and unusual behavior to detect issues early.
- If we become aware of a security incident that affects your data, we will investigate, mitigate, and notify affected customers as appropriate.
You're responsible for:
- Protecting your login credentials
- Limiting dashboard access to trusted team members
- Letting us know promptly if you suspect unauthorized access