Security at Clastines

Your security is our top priority. Here's how we protect your data and privacy.

Encryption

All data transmitted to and from Clastines is protected with industry-standard TLS 1.3 encryption. Your data at rest is encrypted using AES-256 encryption, the same standard used by banks and government institutions.

TLS 1.3
AES-256
End-to-End Encrypted

Authentication & Access

  • Multi-factor authentication (MFA) required for all accounts
  • OAuth 2.0 for secure third-party service connections
  • Session management with automatic timeout
  • Granular permission controls for all integrations

Infrastructure Security

Our infrastructure is hosted on enterprise-grade cloud platforms with:

  • 24/7 monitoring and intrusion detection
  • Regular security audits and penetration testing
  • Automated backup and disaster recovery systems
  • Isolated production environments
  • DDoS protection and rate limiting

Privacy by Design

We build privacy into every feature from the ground up:

  • Your data is never used to train models without explicit consent
  • Data minimization - we only collect what's necessary
  • Automatic PII detection and redaction capabilities
  • You can export or delete all your data at any time

Compliance & Certifications

Clastines complies with major data protection regulations:

GDPR

EU General Data Protection Regulation compliant

CCPA

California Consumer Privacy Act compliant

SOC 2

Type II certification in progress

ISO 27001

Information security standard compliance

Incident Response

In the unlikely event of a security incident, we have a comprehensive response plan:

  • 24/7 security team monitoring
  • Immediate user notification of any breach affecting their data
  • Transparent communication about incidents and remediation
  • Cooperation with authorities when required

Responsible Disclosure

We take security vulnerabilities seriously and appreciate responsible disclosure. If you discover a security issue, please report it to:

Email: security@clastines.com

Please do not publicly disclose the issue until we've had a chance to address it. We aim to respond within 48 hours and will keep you informed of our progress.

Questions?

Have questions about our security practices? We're happy to discuss them.

Contact our security team at security@clastines.com