Skip to main content
Security & Trust

Your data is safe with us

We take security seriously. Here's how we protect your business data and your customers' feedback.

Infrastructure & Data Protection

Tenant Data Isolation

Every organization’s data is isolated at the database level using PostgreSQL Row-Level Security (RLS) policies. Your data is never accessible to other customers, even in shared infrastructure.

Encryption

All data in transit is encrypted with TLS 1.2+. Data at rest is encrypted using AES-256 via our database provider. Passwords are hashed using bcrypt with per-user salts.

Cloud Hosting

Our database is hosted on Supabase (backed by AWS infrastructure) with automatic daily backups, point-in-time recovery, and high-availability failover.

SSL/TLS Everywhere

All connections to Feedback Guardian are encrypted with HTTPS. We enforce SSL on all endpoints — your feedback forms, dashboard, and API calls are always secure.

Authentication & Access Control

Secure Authentication

User authentication is handled by Supabase Auth with secure session management, password complexity requirements, and email-verified accounts.

Role-Based Access Control

Team access is controlled through Admin and Viewer roles. Admins can manage settings, invite members, and configure feedback points. Viewers have read-only access to analytics and responses.

Audit Logging

All significant actions — creating feedback points, inviting team members, changing settings, and managing responses — are logged with timestamps and user attribution for full accountability.

Payment & Billing Security

We never store credit card numbers, CVVs, or sensitive payment information on our servers. All payment processing is handled entirely by Stripe, which is PCI-DSS Level 1 certified — the highest level of payment security certification.

Your billing information is managed through Stripe's secure Customer Portal. We only store a Stripe customer reference ID to link your account to your subscription.

PCI-DSS Level 1 certified (via Stripe)
No credit card data stored on our servers
Secure checkout with Stripe Checkout
Self-service billing management via Stripe Portal

Privacy & Feedback Collection

Anonymous by Default

Customer feedback is collected anonymously. We don’t track respondents, require sign-ups, or collect device fingerprints. Respondents can optionally share contact information if they choose to.

No Third-Party Data Selling

We will never sell, share, or monetize your business data or your customers' feedback. Your data exists solely for your use within the platform.

Data Export

You can export all your feedback data at any time via CSV export. Your data belongs to you, and you can take it with you if you leave.

Minimal Data Collection

We collect only what’s necessary to operate the service: your account email, company name, and feedback responses. No unnecessary tracking or analytics on your users.

Compliance & Legal

We're committed to operating transparently and in compliance with data protection regulations.

Privacy Policy

How we collect, use, and protect your data.

Read Policy

Terms of Service

The terms governing use of our platform.

Read Terms

Contact Us

Questions about security or compliance?

Get in Touch

Trusted by businesses to protect their feedback

Start your -day free trial today. No credit card required.