Trust & Security

Security at PromptMantra

We take the security of your data seriously. Here's how we protect your brand intelligence.

๐Ÿ”’

Encryption

  • โœ“All data in transit is encrypted using TLS 1.2+
  • โœ“Database connections use encrypted channels
  • โœ“Passwords are hashed using bcrypt with per-user salts
  • โœ“API keys and secrets are stored in encrypted environment variables
๐Ÿ—๏ธ

Infrastructure

  • โœ“Hosted on SOC 2 compliant cloud infrastructure
  • โœ“Container-based deployment with Docker for isolation
  • โœ“PostgreSQL database with automated backups
  • โœ“Redis for secure session management with TTL-based expiry
  • โœ“Private networking between application services
๐Ÿ”

Access Controls

  • โœ“Role-based access control (RBAC) for all users
  • โœ“JWT-based authentication with short-lived access tokens
  • โœ“Refresh token rotation for session security
  • โœ“Production systems restricted to authorized personnel only
  • โœ“All administrative actions are logged for audit
๐Ÿ›ก๏ธ

Application Security

  • โœ“Input validation and sanitization on all endpoints
  • โœ“CORS policies restricting cross-origin requests
  • โœ“Rate limiting on authentication endpoints
  • โœ“SQL injection prevention via parameterized queries (SQLAlchemy ORM)
  • โœ“Regular dependency updates and vulnerability scanning
๐Ÿ“Š

Monitoring & Response

  • โœ“Real-time application health monitoring
  • โœ“Automated alerts for service degradation
  • โœ“Structured logging for security event tracking
  • โœ“Incident response procedures documented and tested
๐Ÿ”

Data Handling

  • โœ“AI engine queries are made on your behalf โ€” your prompts are not shared with other users
  • โœ“Brand monitoring data is isolated per organization
  • โœ“Data export available in standard formats (CSV/JSON)
  • โœ“Account deletion results in data removal within 30 days

๐Ÿ› Report a Vulnerability

If you discover a security vulnerability, please report it responsibly. We appreciate your help in keeping PromptMantra secure for everyone.

Contact security@146.190.147.44 โ†’