Security at Florentin
We take the security of your data seriously. Here's how we protect your information.
TLS 1.3
All data in transit encrypted with TLS 1.3
AES-256
All data at rest encrypted with AES-256
GDPR
Full GDPR compliance for EU customers
SOC 2
SOC 2 Type II certification (coming soon)
Data Encryption
We use industry-standard encryption to protect your data both in transit and at rest:
- All connections secured with TLS 1.3
- Database encryption using AES-256
- API keys stored with one-way hashing
- Regular security audits and penetration testing
Data Protection & Privacy
We are committed to protecting your privacy and complying with data protection regulations:
- GDPR compliant data processing
- Data minimization principles
- Right to data portability and deletion
- Regular data protection impact assessments
For more details, see our Privacy Policy .
Security Headers
We implement comprehensive security headers to protect against common web vulnerabilities:
Content-Security-Policy: default-src 'self'
X-Frame-Options: DENY
X-Content-Type-Options: nosniff
Strict-Transport-Security: max-age=31536000; includeSubDomains
Referrer-Policy: strict-origin-when-cross-origin
Permissions-Policy: geolocation=(), microphone=(), camera=()Infrastructure Security
Our infrastructure is designed with security in mind:
- Hosted on enterprise-grade cloud infrastructure
- Automated backups with point-in-time recovery
- DDoS protection and rate limiting
Responsible Disclosure
We appreciate the work of security researchers in helping us keep Florentin safe.
If you believe you've found a security vulnerability, please report it to us responsibly.
Disclosure Guidelines
- Give us reasonable time to address the issue before public disclosure
- Avoid accessing, modifying, or deleting data that isn't yours
- Don't perform actions that could harm our users or services
- Provide sufficient detail to reproduce the vulnerability
- We commit to acknowledging your report within 48 hours
Report a Vulnerability
Found a security issue? Please contact our security team.
security@florentin.ioHave Security Questions?
Our team is happy to answer any questions about our security practices.
Contact Us