Security & Transparency

How we protect your data and maintain your trust

How We Encrypt Your Data

Your most sensitive data—journals, mood notes, and conversations with Araba—is encrypted using AES-256-GCM encryption, the same standard used by governments and banks.

What does this mean?

  • Your data is scrambled into an unreadable format using a secret key unique to you
  • Data is encrypted before leaving your device and stays encrypted in our database
  • Only you can decrypt and read your personal content when logged in

Important to Know

In rare cases required by law (e.g., court orders) or critical security situations, authorized administrators may access encrypted data with proper justification. All such access is logged and audited. We maintain strict internal controls and never access user data for any other purpose.

2024 Transparency Report

0

Government data requests

0

User data breaches

0

Third-party data sales

We are committed to transparency. In 2024, we received no government requests for user data, experienced no security breaches, and never sold any user data to third parties. We will continue to publish annual transparency reports to maintain your trust.

Our Security Measures

Two-Factor Authentication

Required for all admin accounts

Encrypted Storage

AES-256-GCM encryption for sensitive data

Audit Logging

All data access logged and monitored

Access Controls

Role-based permissions and row-level security

Regular Security Audits

Continuous monitoring and assessment

Secure Infrastructure

Industry-standard cloud security practices

Data Minimization

We only collect what we need

Automatic Cleanup

Old data purged per retention policies

Security Questions?

If you have questions about our security practices or want to report a vulnerability, contact us:

security@snuggli.co