Back to Documentation
Data Security
Learn about how UXFeed protects your data and ensures security.
Our Commitment to Security
At UXFeed, we take data security seriously. We implement industry-standard security measures to protect your information and ensure your projects remain safe and private.
Data Encryption
- In Transit: All data is encrypted using TLS 1.3 when transmitted between your device and our servers
- At Rest: Sensitive data is encrypted at rest using AES-256 encryption
- Database: All database connections are encrypted and secured
Authentication & Access Control
- Secure Authentication: We use industry-standard authentication methods including OAuth 2.0
- Password Security: Passwords are hashed using bcrypt with salt
- API Keys: API keys are encrypted and can be revoked at any time
- Role-Based Access: Access to projects and data is controlled based on user roles and permissions
Infrastructure Security
- Hosting: Our infrastructure is hosted on secure, compliant cloud platforms
- Regular Updates: We keep all systems and dependencies up to date with security patches
- Monitoring: We continuously monitor for security threats and anomalies
- Backups: Regular automated backups ensure data recovery in case of incidents
Privacy Controls
You have control over your data:
- Private Projects: Keep projects private and only share with approved testers
- Data Export: Export your data at any time
- Account Deletion: Delete your account and all associated data when you choose
- Access Logs: View who has accessed your projects
Compliance
We comply with:
- GDPR: European General Data Protection Regulation compliance
- CCPA: California Consumer Privacy Act compliance
- SOC 2: Security and availability standards (in progress)
Reporting Security Issues
If you discover a security vulnerability, please report it responsibly:
- Email: security@uxfeed.com
- Do not publicly disclose vulnerabilities until we've had a chance to address them
- We appreciate responsible disclosure and will acknowledge your contribution
Best Practices for Users
Help keep your account secure:
- Use a strong, unique password
- Enable two-factor authentication when available
- Don't share your API keys or credentials
- Review access logs regularly
- Keep your projects private if they contain sensitive information