We believe in complete transparency about how we protect your funds and data. Here's everything you need to know.
Four fundamental principles that protect your automation account
Your data and assets stay in your external accounts at all times. We only route payloads - we never have access to withdraw or transfer any assets.
We use target destination API keys with restricted permissions - routing/posting only, no administrative access. Even if compromised, your assets cannot be moved.
Your data is encrypted in transit and at rest using modern industry standards. API keys are stored securely and never exposed.
You have complete visibility into every event, routing rule, and action. Real-time notifications and detailed logs keep you informed 24/7.
A step-by-step look at how we keep your funds secure
On your target platform, create API keys with only 'read' and 'write' permissions. Never enable administrative/transfer permissions.
Your API keys are encrypted with AES-256 and stored in secure, isolated databases. We use industry-standard security practices.
Our system monitors event feeds and routes payloads on your behalf - but only routes. Your assets stay safely in your target account.
Pause routing anytime, revoke API keys instantly, or adjust validation settings. You're always in control.
Industry-leading standards across every aspect of our platform
We believe in honest, clear communication about our platform
We're transparent about how our system works, what we can and cannot do, and how we protect your interests.
No hidden clauses or legal jargon. Our terms are written in plain English so you know exactly what you're agreeing to.
Data delivery depends on external uptime. We are upfront about third-party API limits and enforce strict timeout rules.
Our infrastructure is built on proven, enterprise-grade technologies used by leading institutions.
Even in the worst-case scenario, your assets are safe. We only store restricted API keys with no transfer or withdrawal permissions. Attackers cannot move your assets off your account.
No. We never have your destination login credentials. We only use API keys you create with restricted permissions. You maintain full control and can revoke our access at any time by deleting the API key in your account settings.
Your API keys are encrypted with AES-256 (military-grade encryption) and stored in secure, isolated databases. We never display your full API keys after initial setup, and all access is logged and monitored for suspicious activity.
You can stop at any time with no penalties. Simply pause routing in your dashboard or revoke the API key. Your data can be deleted upon request, and there are no cancellation fees.
Never. Your routing data, email, and personal information are never sold, shared, or used for any purpose other than providing our service to you. We're NDPR compliant and take data privacy seriously.
Your security and trust are the foundation of everything we build. Start automating with peace of mind.