Legal

Security

Last updated:

Nov 7, 2024

Please read the Security statement below. The Keep Good Company® LLC prioritizes the protection of personal and sensitive information. Industry-leading data security practices are leveraged through trusted third-party service providers to ensure safety.

SECURE COMMUNICATION & DATA HANDLING

ProtonMail by Proton

ProtonMail is used for secure email communications, offering:

  • ISO/IEC 27001 compliance

  • Data encryption: Protects data both at rest and in transit.

    • Only the intended recipient can access the email content.

  • Zero-access encryption: Proton cannot decrypt or access email data.

  • Open source and independently audited software.

    • Proton's applications have undergone independent security audits for transparency.

  • GDPR compliance: Data management aligned with strict European Union privacy regulations.

DATA STORAGE & PROCESSING

iCloud by Apple

iCloud is used for distributed applications that facilitate business and client services, including communication and software development.

  • Data encryption: Protects data both at rest and in transit.

  • ISO/IEC 27001 and 27018 compliance: Adheres to international standards for information security management and personal data protection in the cloud.

  • GDPR compliance: Data management aligned with strict European Union privacy regulations.

Learn more about Apple's security practices on https://support.apple.com/guide/certifications.

Notion by Notion Labs

Notion is used for internal operation orchestration. It may also be used to share eligible content securely. Their security practices include:

  • Data encryption: Protects data both at rest and in transit.

  • SOC 2 Type II compliance: Demonstrates adherence to industry-standard security practices.

  • GDPR compliance: Data management aligned with strict European Union privacy regulations.

Learn more about Notion's security practices on https://www.notion.so/security.

ProtonDrive by Proton

ProtonDrive is used for secure file storage, offering:

  • ISO/IEC 27001 compliance

  • Data encryption: Protects data both at rest and in transit.

    • Uploaded files are encrypted on the device before transit.

  • Zero-access encryption: Proton cannot decrypt or access stored data.

  • Secure file sharing: Files can be shared securely with end-to-end encryption.

  • Open source and independently audited software.

    • Proton's applications have undergone independent security audits for transparency.

  • GDPR compliance: Data management aligned with strict European Union privacy regulations.

Supabase by Supabase Inc.

Supabase is used for AIREPORT® app and website back-end operations, offering:

  • SOC2 Type 2 compliance

  • Data encryption: Protects data both at rest and in transit.

  • Vulnerability management: Industry experts conduct regular penetration tests.

  • DDoS protection: Combatting Distributed Denial of Service attacks.

DATA RETENTION & MANAGEMENT

Data is retained for a minimum of one year. Information is securely stored using the aforementioned services: ProtonDrive, Apple iCloud, and Notion. The following practices are implemented:

  • Access Controls: Strict access controls are maintained, ensuring only authorized personnel can access client data on a need-to-know basis.

  • Secure Deletion: When data is no longer needed, it is securely deleted within the respective environment(s) (ProtonDrive, Apple iCloud, and Notion) using secure deletion processes.

CONTACT INFORMATION

For questions about security, please email care@keepgood.co.

Legal

Security

Last updated:

Nov 7, 2024

Please read the Security statement below. The Keep Good Company® LLC prioritizes the protection of personal and sensitive information. Industry-leading data security practices are leveraged through trusted third-party service providers to ensure safety.

SECURE COMMUNICATION & DATA HANDLING

ProtonMail by Proton

ProtonMail is used for secure email communications, offering:

  • ISO/IEC 27001 compliance

  • Data encryption: Protects data both at rest and in transit.

    • Only the intended recipient can access the email content.

  • Zero-access encryption: Proton cannot decrypt or access email data.

  • Open source and independently audited software.

    • Proton's applications have undergone independent security audits for transparency.

  • GDPR compliance: Data management aligned with strict European Union privacy regulations.

DATA STORAGE & PROCESSING

iCloud by Apple

iCloud is used for distributed applications that facilitate business and client services, including communication and software development.

  • Data encryption: Protects data both at rest and in transit.

  • ISO/IEC 27001 and 27018 compliance: Adheres to international standards for information security management and personal data protection in the cloud.

  • GDPR compliance: Data management aligned with strict European Union privacy regulations.

Learn more about Apple's security practices on https://support.apple.com/guide/certifications.

Notion by Notion Labs

Notion is used for internal operation orchestration. It may also be used to share eligible content securely. Their security practices include:

  • Data encryption: Protects data both at rest and in transit.

  • SOC 2 Type II compliance: Demonstrates adherence to industry-standard security practices.

  • GDPR compliance: Data management aligned with strict European Union privacy regulations.

Learn more about Notion's security practices on https://www.notion.so/security.

ProtonDrive by Proton

ProtonDrive is used for secure file storage, offering:

  • ISO/IEC 27001 compliance

  • Data encryption: Protects data both at rest and in transit.

    • Uploaded files are encrypted on the device before transit.

  • Zero-access encryption: Proton cannot decrypt or access stored data.

  • Secure file sharing: Files can be shared securely with end-to-end encryption.

  • Open source and independently audited software.

    • Proton's applications have undergone independent security audits for transparency.

  • GDPR compliance: Data management aligned with strict European Union privacy regulations.

Supabase by Supabase Inc.

Supabase is used for AIREPORT® app and website back-end operations, offering:

  • SOC2 Type 2 compliance

  • Data encryption: Protects data both at rest and in transit.

  • Vulnerability management: Industry experts conduct regular penetration tests.

  • DDoS protection: Combatting Distributed Denial of Service attacks.

DATA RETENTION & MANAGEMENT

Data is retained for a minimum of one year. Information is securely stored using the aforementioned services: ProtonDrive, Apple iCloud, and Notion. The following practices are implemented:

  • Access Controls: Strict access controls are maintained, ensuring only authorized personnel can access client data on a need-to-know basis.

  • Secure Deletion: When data is no longer needed, it is securely deleted within the respective environment(s) (ProtonDrive, Apple iCloud, and Notion) using secure deletion processes.

CONTACT INFORMATION

For questions about security, please email care@keepgood.co.