Security & Privacy
Enterprise-grade security and compliance for your AI prompts and data.
Data Encryption
Encryption in Transit
All data transmitted between your browser and our servers is encrypted using TLS 1.3 with HTTPS-only enforcement.
Encryption at Rest
All stored data (prompts, user information, metadata) is encrypted using AES-256 encryption with secure key management.
Infrastructure & Reliability
Hosting
Hosted on enterprise-grade infrastructure (Vercel and Supabase) with industry-leading security certifications. Multi-region deployment in US and EU for compliance and performance.
Backups
Automatic hourly backups with 30-day retention. Geo-redundant storage with backups replicated across multiple regions.
Uptime
99.9% uptime SLA for Enterprise plans with DDoS protection and enterprise-grade infrastructure.
Access Controls
Authentication
OAuth 2.0 via Google or email. SAML 2.0 SSO available for Enterprise customers. Two-factor authentication coming soon.
Permissions
Granular role-based access control (Owner, Admin, Editor, Viewer) with prompt-level sharing permissions and audit logs for Enterprise.
Version History
Automatic versioning on every edit with the ability to restore previous versions. Soft deletes with 30-day recovery window.
Compliance & Certifications
GDPR
Fully compliant with GDPR requirements for EU users, including data processing agreements, right to access/export/delete, and breach notification within 72 hours.
CCPA
California residents have the right to know what data we collect, delete personal information, and opt-out of data sales (we never sell data).
Infrastructure Security
Built on certified infrastructure providers (Vercel, Supabase, Stripe) that maintain SOC 2 Type II, ISO 27001, and other industry certifications. See our subprocessors page for details.
Data Transparency
We never sell your data. Your prompts, usage patterns, and personal information are never shared with third parties for marketing or advertising.
We never train AI models on your prompts. Your intellectual property remains yours.
You own your data. Export or delete all your data at any time with no lock-in or hidden fees.
We only work with vetted, security-certified service providers. Full list available in our subprocessors page.
Related Pages
Legal Trust Center
All legal documentation and compliance certifications
Privacy Policy
How we collect, use, and protect your information
Data Protection Addendum
GDPR compliance and data processing agreements
Data Erasure Policy
How to request deletion of your account and data
Subprocessors
Third-party service providers we work with
Accessibility
Our commitment to WCAG 2.1 compliance
Contact
Security & Legal Inquiries
legal@promptmanage.comVulnerability Disclosure
security@promptmanage.com