Security & Transparency
How we protect your data and maintain your trust
Your most sensitive data—journals, mood notes, and conversations with Araba—is encrypted using AES-256-GCM encryption, the same standard used by governments and banks.
What does this mean?
- Your data is scrambled into an unreadable format using a secret key unique to you
- Data is encrypted before leaving your device and stays encrypted in our database
- Only you can decrypt and read your personal content when logged in
Important to Know
In rare cases required by law (e.g., court orders) or critical security situations, authorized administrators may access encrypted data with proper justification. All such access is logged and audited. We maintain strict internal controls and never access user data for any other purpose.
0
Government data requests
0
User data breaches
0
Third-party data sales
We are committed to transparency. In 2024, we received no government requests for user data, experienced no security breaches, and never sold any user data to third parties. We will continue to publish annual transparency reports to maintain your trust.
Two-Factor Authentication
Required for all admin accounts
Encrypted Storage
AES-256-GCM encryption for sensitive data
Audit Logging
All data access logged and monitored
Access Controls
Role-based permissions and row-level security
Regular Security Audits
Continuous monitoring and assessment
Secure Infrastructure
Industry-standard cloud security practices
Data Minimization
We only collect what we need
Automatic Cleanup
Old data purged per retention policies
Security Questions?
If you have questions about our security practices or want to report a vulnerability, contact us:
security@snuggli.co