Your data is safe with us
We take security seriously. Here's how we protect your business data and your customers' feedback.
Infrastructure & Data Protection
Tenant Data Isolation
Every organization’s data is isolated at the database level using PostgreSQL Row-Level Security (RLS) policies. Your data is never accessible to other customers, even in shared infrastructure.
Encryption
All data in transit is encrypted with TLS 1.2+. Data at rest is encrypted using AES-256 via our database provider. Passwords are hashed using bcrypt with per-user salts.
Cloud Hosting
Our database is hosted on Supabase (backed by AWS infrastructure) with automatic daily backups, point-in-time recovery, and high-availability failover.
SSL/TLS Everywhere
All connections to Feedback Guardian are encrypted with HTTPS. We enforce SSL on all endpoints — your feedback forms, dashboard, and API calls are always secure.
Authentication & Access Control
Secure Authentication
User authentication is handled by Supabase Auth with secure session management, password complexity requirements, and email-verified accounts.
Role-Based Access Control
Team access is controlled through Admin and Viewer roles. Admins can manage settings, invite members, and configure feedback points. Viewers have read-only access to analytics and responses.
Audit Logging
All significant actions — creating feedback points, inviting team members, changing settings, and managing responses — are logged with timestamps and user attribution for full accountability.
Payment & Billing Security
We never store credit card numbers, CVVs, or sensitive payment information on our servers. All payment processing is handled entirely by Stripe, which is PCI-DSS Level 1 certified — the highest level of payment security certification.
Your billing information is managed through Stripe's secure Customer Portal. We only store a Stripe customer reference ID to link your account to your subscription.
Privacy & Feedback Collection
Anonymous by Default
Customer feedback is collected anonymously. We don’t track respondents, require sign-ups, or collect device fingerprints. Respondents can optionally share contact information if they choose to.
No Third-Party Data Selling
We will never sell, share, or monetize your business data or your customers' feedback. Your data exists solely for your use within the platform.
Data Export
You can export all your feedback data at any time via CSV export. Your data belongs to you, and you can take it with you if you leave.
Minimal Data Collection
We collect only what’s necessary to operate the service: your account email, company name, and feedback responses. No unnecessary tracking or analytics on your users.
Compliance & Legal
We're committed to operating transparently and in compliance with data protection regulations.
Trusted by businesses to protect their feedback
Start your -day free trial today. No credit card required.