Security Policy
We take the security of your account and data seriously. This page summarizes how we protect the Service and how to report a vulnerability.
1. Encryption
All connections use HTTPS, and your data is encrypted both in transit and at rest on reputable cloud infrastructure.
2. Account protection
Passwords are stored only in encrypted (hashed) form, never in plain text. We offer modern sign-in options — including passwordless login — and protections against automated abuse.
3. Access controls
We apply strict access controls so each account can only access its own data. Sensitive operations run on our servers and are never exposed to your browser.
4. Payments
Card payments are handled by a certified, PCI-DSS compliant payment provider. We never see or store your full card number.
5. Data minimization
We collect only what we need to run the Service and anonymize data wherever possible. Files you no longer use are removed automatically.
6. Monitoring & updates
We monitor the Service and apply security updates promptly to keep your account and data protected.
7. Reporting a vulnerability
Found a security issue? Please email elevatehuboficial@gmail.com with the details. We will acknowledge it promptly and work with you on a fix. Please do not disclose it publicly until it has been resolved. We do not take legal action against good-faith researchers.
8. Breach notification
If a data breach affects you, we will notify affected users and the relevant authorities within 72 hours, as required by applicable law.
Operated by Elevate Hub Agency LLC. This document is informational and does not constitute legal advice.