Security Overview
Last updated: May 31, 2026
Commitment
EthicPages implements administrative, technical, and organizational measures appropriate for a B2B SaaS handling customer business data.
Infrastructure
- Hosted on modern cloud infrastructure with encryption in transit (TLS 1.2+) and at rest
- Database access restricted to application services
- Secrets stored in environment configuration, not source code
Access control
- Role-based access for EthicPages personnel
- MFA required for production systems
- Annual access reviews
Application security
- Dependency monitoring and security patches
- Protected authentication via Better Auth
- Stripe handles payment card data; we do not store PANs
Incident response
We maintain an incident response process. Customers are notified of breaches affecting their data without undue delay per our DPA.
Contact
Security inquiries: hello@ethicpages.com