Security & Data Protection

Data Encryption

All data is encrypted in transit and at rest using industry-standard protocols. Session transcripts and personal information are protected with enterprise-grade security.

Infrastructure Partners

  • Authentication: Clerk (SOC 2 Type II certified)
  • Database: MongoDB Atlas (ISO 27001 certified)
  • Backend: Render (SOC 2 compliant hosting)
  • Frontend: Vercel (enterprise security standards)
  • Domain: GoDaddy with SSL certification

AI Data Processing

  • Session transcripts and other documents uploaded by users are processed securely by certified AI providers
  • All AI processing follows strict data protection protocols
  • No training data is retained by AI services

Compliance

  • GDPR compliant for EU users
  • CCPA compliant for California residents
  • Regular security assessments and monitoring

Data Access

  • Only you and your coach have access to your session data
  • Multi-factor authentication required for all accounts
  • Granular access controls and audit logging

Questions?

Contact us at arete@cassiecamp.com for security inquiries.