Back to Home

Security

How we protect your data

Security is at the core of everything we do at SendScope. We implement industry-leading practices to ensure your data and your customers' data remain safe and secure.

Encryption

All data encrypted in transit and at rest using AES-256 and TLS 1.3

Secure Infrastructure

Hosted on SOC 2 compliant cloud infrastructure with 99.9% uptime

Access Control

Role-based access control with secure authentication mechanisms

Data Protection

Encryption at Rest

All stored data is encrypted using AES-256 encryption. This includes your email templates, recipient lists, and campaign data. Encryption keys are managed securely and rotated regularly.

Encryption in Transit

All communications between your browser and our servers are encrypted using TLS 1.3. We enforce HTTPS on all connections and use HSTS to prevent downgrade attacks.

Password Security

User passwords are hashed using bcrypt with a high cost factor. We never store passwords in plain text. Password reset tokens are single-use and time-limited.

API Key Protection

API credentials and provider keys are encrypted before storage. Access to these credentials is strictly controlled and audited.

Infrastructure Security

Cloud Security

  • Hosted on enterprise-grade cloud infrastructure
  • Regular security patches and updates
  • DDoS protection and rate limiting
  • Network isolation and firewalls
  • Automated backups with point-in-time recovery

Monitoring & Response

  • 24/7 system monitoring and alerting
  • Intrusion detection systems
  • Comprehensive audit logging
  • Incident response procedures
  • Regular penetration testing

Application Security

Secure Development

We follow secure coding practices and conduct regular code reviews. Our development process includes automated security scanning, dependency vulnerability checking, and manual security testing.

Input Validation

All user inputs are validated and sanitized to prevent injection attacks

CSRF Protection

Cross-site request forgery tokens on all state-changing operations

XSS Prevention

Content Security Policy and output encoding to prevent XSS

Security Best Practices for Users

While we do our part to keep your account secure, here are some steps you can take:

Use Strong Passwords

Choose unique, complex passwords for your account

Keep Credentials Private

Never share your API keys or login credentials

Review Activity

Regularly check your account activity and campaign logs

Secure Your Email

Protect the email account associated with SendScope

Report Issues

Contact us immediately if you notice suspicious activity

Stay Updated

Keep your browser and systems up to date

Report a Security Issue

If you discover a security vulnerability, please report it responsibly. We appreciate your help in keeping SendScope secure.

Contact Security Team