Security
How we protect your data and ensure platform security
Our Commitment to Security
At QuantVec, security is a top priority. We are committed to protecting your data and maintaining the integrity of our platform. This page outlines the security measures we implement to safeguard your information.
Data Encryption
In Transit
All data transmitted between your browser and our servers is encrypted using TLS 1.3 (Transport Layer Security). This ensures that your data cannot be intercepted or read by unauthorized parties.
At Rest
Sensitive data stored in our databases is encrypted using AES-256 encryption. This includes personal information, credentials, and any other sensitive user data.
Authentication & Access Control
- Secure Password Storage: Passwords are hashed using bcrypt with salting, ensuring they cannot be recovered even if our database is compromised.
- Session Management: Secure session tokens with automatic expiration. Sessions are invalidated on logout and after periods of inactivity.
- Email Verification: New accounts require email verification to prevent unauthorized account creation.
- Rate Limiting: Protection against brute-force attacks through intelligent rate limiting on authentication endpoints.
Infrastructure Security
- Cloud Infrastructure: We use industry-leading cloud providers with SOC 2 Type II certification and robust physical security measures.
- Network Security: Firewalls, intrusion detection systems, and DDoS protection safeguard our infrastructure.
- Regular Updates: Systems and dependencies are regularly updated to patch known vulnerabilities.
- Backup & Recovery: Regular automated backups with tested recovery procedures ensure data availability.
Application Security
- Input Validation: All user inputs are validated and sanitized to prevent injection attacks (SQL injection, XSS, etc.).
- CSRF Protection: Cross-Site Request Forgery tokens protect against unauthorized actions.
- Content Security Policy: Strict CSP headers prevent unauthorized script execution.
- Secure Cookies: HTTP-only, secure, and SameSite cookie attributes protect session data.
Payment Security
We do not store credit card information on our servers. All payment processing is handled by PCI DSS compliant third-party payment processors. Your payment information is transmitted directly to these processors using secure, encrypted connections.
Monitoring & Incident Response
- 24/7 Monitoring: Continuous monitoring of our systems for suspicious activity and potential threats.
- Audit Logging: Comprehensive logs of security-relevant events for forensic analysis.
- Incident Response Plan: Documented procedures for responding to security incidents quickly and effectively.
Your Role in Security
Security is a shared responsibility. We recommend:
- Using a strong, unique password for your QuantVec account
- Not sharing your account credentials with others
- Logging out when using shared or public computers
- Keeping your browser and operating system up to date
- Being cautious of phishing emails claiming to be from QuantVec
Report a Security Issue
If you discover a security vulnerability or have concerns about our security practices, please contact us immediately at:
Trigarth Systemagic Pvt Ltd
Email: support@quantvec.ai
We take all security reports seriously and will respond promptly to investigate and address any issues.