Security
How we protect your data and ensure platform security

Data Protection

Password Security

All user passwords are hashed using bcrypt before storage. We never store passwords in plain text, and our authentication system follows industry best practices.

Encryption

All data transmitted between your browser and our servers is encrypted using TLS/SSL. Your sensitive information is protected during transmission.

Database Security

We use Neon PostgreSQL with SSL-encrypted connections. Database access is restricted and monitored. Regular backups ensure data integrity and availability.

Infrastructure Security

Hosting & Infrastructure

Our application is hosted on Vercel, which provides enterprise-grade security, DDoS protection, and automatic SSL certificates. All infrastructure follows security best practices.

API Security

API endpoints are protected with authentication and authorization. We implement rate limiting to prevent abuse and protect against common attacks.

Access Control

User Authentication

Secure session management ensures that only authenticated users can access their accounts. Sessions expire after periods of inactivity.

Data Isolation

User data is isolated and can only be accessed by the account owner. We implement strict access controls to ensure data privacy.

Monitoring & Incident Response

Security Monitoring

We continuously monitor our systems for suspicious activity, unauthorized access attempts, and potential security threats. Automated alerts help us respond quickly to any issues.

Incident Response

In the event of a security incident, we have procedures in place to quickly assess, contain, and remediate the issue. Affected users will be notified as required by law.

Your Responsibility

While we take security seriously, you also play an important role in keeping your account secure:

  • Use a strong, unique password for your account
  • Do not share your login credentials with anyone
  • Log out when using shared or public computers
  • Report any suspicious activity immediately
  • Keep your browser and operating system updated

Reporting Security Issues

If you discover a security vulnerability or have concerns about our security practices, please contact us immediately at:

security@convictionplay.com

We appreciate responsible disclosure and will work with you to address any security concerns.

Security is an ongoing process, and we continuously work to improve our security measures. This page was last updated: January 26, 2026