In this section, we outline the key frameworks and measures for safeguarding the security and privacy of user data on Altpaths.io. We first cover the global standards we comply with, then describe the technical safeguards in place to protect information. We also explain our principles of data minimization, transparency, role-based access control, and our procedures for notifying users in the event of a data breach.
All traffic between users and our site is secured via HTTPS with SSL/TLS certificates to prevent interception or tampering of data in transit.
User passwords are stored using salted hashing techniques to resist brute-force and rainbow-table attacks.
We never sell or share personal data with third parties without user consent; when data transfers are necessary (e.g., payment processing), we use Data Processing Agreements to enforce strict protections.
We collect only the minimum information needed to provide our services (for example, an email address to send reports) and delete any unnecessary data promptly.
Users can request deletion of their account and all associated data at any time; we complete such deletions within four weeks in accordance with GDPR requirements.