
Security & Trust
Security, privacy, and reliability are foundational to how we build and operate.
Data Protection
- All data encrypted in transit using HTTPS (TLS 1.2+)
- Role-based access controls for internal systems
- Secure object storage for Vault images
- Infrastructure-level firewall and DDoS protections
- Regular dependency updates and security patching
We follow a principle of data minimization, collecting only what is necessary to operate the service.
Infrastructure and Hosting
Our platform is hosted on enterprise-grade cloud infrastructure (for example Vercel and Supabase) that provides managed backups, monitoring, and industry-standard security practices.
Team Mode Safeguards
Team environments are private by default and include administrative controls:
- Invite-only private rooms
- Optional profanity filtering
- Chat enable/disable controls
- Room-level moderation
- Session expiration options
- Admin ability to delete rooms and associated content
Public rooms are clearly separated from Team Mode and include basic moderation protections.
Data Collection and Privacy
By default, we collect only:
- Display name
- Room session data
We do not:
- Sell user data
- Share user data with advertisers
- Publicly index private rooms
If email collection is enabled, it is used solely for account-related communication and product updates.
Payment Security
For paid plans, payments are processed through a PCI-DSS compliant payment processor (for example Stripe). We do not store, process, or transmit cardholder data on our servers.
Content Moderation
- Profanity filters are available
- Room admins can control chat access
- Inappropriate content can be reported
- Public rooms are monitored for abuse patterns
Team rooms remain private and invite-only.
Data Retention and Deletion
- Vault images are retained per room or team settings
- Team admins may delete rooms and associated content
- Chat logs are not permanently archived unless configured
- Users may request account data deletion
Reliability and Availability
- 99.9% uptime target
- Real-time multiplayer supported by managed infrastructure
- Autoscaling architecture designed to support growth