Security
1Encryption
Data is encrypted in transit using industry-standard TLS and encrypted at rest by our infrastructure providers. Sensitive credentials and connector tokens are stored encrypted and are never exposed in plain text to other users.
2Authentication and access control
User authentication is handled by a specialized identity provider. Access to production systems is restricted on a least-privilege basis, protected by authentication and logging, and reviewed periodically. Workspace data is scoped so that users can access only the workspaces they belong to.
3Payments
Payments are processed by a third-party payment provider. Card details are handled by that provider's secure, PCI-compliant systems; we do not store full card numbers on our own systems.
4Infrastructure and isolation
The Service runs on reputable managed cloud infrastructure with automated backups, monitoring, and isolation between environments. We separate test and production environments and their data.
5Data isolation
Each workspace's data — products, conversations, documents, and decision logs — is logically isolated and access-controlled so that it is available only to authorized members of that workspace.
6Responsible disclosure
We welcome reports of potential security issues. If you believe you have found a vulnerability, please contact us at support@products-platforms.com with details so we can investigate and respond. Please act in good faith and avoid accessing or modifying other users' data.
7Ongoing improvement
Security is an ongoing process. We continue to strengthen our controls, monitoring, and practices, and we will update this page as our measures evolve.