Security Policy

At Domain Locker, protecting your data is one of our highest priorities. We employ robust security measures to safeguard your information and ensure the integrity of our platform. This policy outlines our security practices and how we handle vulnerabilities.


Security Practices

1. Data Encryption

  • All data transmitted between your browser and our servers is encrypted using TLS (Transport Layer Security).
  • Sensitive data, such as passwords, is securely hashed and never stored in plaintext.

2. Access Controls

  • Role-based access controls restrict data access to authorized personnel only.
  • Multi-factor authentication (MFA) is implemented for administrative accounts.

3. Regular Audits and Monitoring

  • We perform regular security audits and vulnerability assessments.
  • Continuous monitoring of the platform ensures early detection of potential issues.

4. Third-Party Services

  • Our third-party providers (e.g., Supabase, Cloudflare, Stripe) are chosen for their high-security standards and GDPR compliance.

Reporting Vulnerabilities

If you discover a security vulnerability in Domain Locker, we encourage you to report it to us responsibly.

  • Contact: Email us at [email protected] with details of the vulnerability.
  • Response: We will acknowledge your report within 48 hours and provide updates as we investigate.

We appreciate the efforts of ethical hackers and security researchers in helping us keep Domain Locker secure.


Responsible Disclosure Policy

To ensure the safety of our users, we request:

  1. Do not publicly disclose the vulnerability until we have resolved it.
  2. Avoid accessing or modifying data that does not belong to you.
  3. Provide sufficient details to reproduce and understand the vulnerability.

If you follow these guidelines, we will:

  • Investigate and resolve the issue promptly.
  • Acknowledge your contribution, if desired.

Updates to This Policy

We may update this policy periodically. Changes will be posted on this page, and your continued use of Domain Locker signifies your acceptance of the updated policy.


Contact

For all security-related inquiries, please contact us at [email protected].


Last updated: Jan, 2025

Initializing

We're just getting everything ready for you. This shouldn't take a moment...