Effective: April 7, 2017
Thousands of users trust LEANSTACK with their sensitive and confidential business ideas. We take that trust seriously. This page describes our security practices.
We implement strict controls over employee access to customer data. Staff require documented authorization to view information, and all access is logged through technical controls and audit policies.
All employees must read and consent to company policies regarding security, availability, and confidentiality of the LEANSTACK services.
LEANSTACK operates on cloud infrastructure that maintains:
LEANSTACK is a PCI Level 4 Merchant and uses Stripe for secure credit card processing.
Encryption: We support HTTPS for all applications and SSL database connections, plus encrypted data at rest.
Single Sign-On: Administrators can integrate with multiple SSO providers.
We perform automated scanning, peer-review code audits, and continuous hybrid scanning.
Centralized logging tracks security events, monitoring, availability, and access metrics.
For security concerns, contact us at team@leanstack.com.