Your Data Security Is Our Priority
Tribunal work involves deeply sensitive personal and spiritual information. We treat its protection as a sacred responsibility.
How We Protect Your Data
Multiple layers of security work together to keep your case information safe.
Encryption at Rest
All data stored in our databases is encrypted using AES-256, the same standard used by banks and government agencies.
Encryption in Transit
Every connection uses TLS 1.3 encryption. Data is never transmitted in plain text.
Secure Authentication
Industry-standard authentication with secure password hashing and server-verified sessions. Multi-factor authentication and single sign-on are built in and enabled when your diocese is onboarded.
Role-Based Access
Fine-grained permissions ensure staff only see what they need. Judges, defenders, notaries — each has appropriate access.
Audit Trails
Complete logging of all case activities. Know who accessed what and when, with full accountability.
Secure Infrastructure
Hosted on enterprise-grade cloud infrastructure in the United States, with managed redundancy, monitoring, and maintained platform patching.
Complete Diocese Isolation
Each diocese operates in a completely isolated environment. Your data is never mixed with other dioceses, and access is strictly controlled.
- Logically isolated data for each diocese
- No cross-diocese data access, ever
- Diocese administrators control their own users
- Custom settings and workflows per diocese
Row-Level Security
Database-enforced isolation
We use row-level security policies at the database level. Even if application code had a bug, the database itself prevents unauthorized access. It's security that doesn't rely on perfect code.
Our Security Practices
Regular Backups
Every diocese deployment runs with automated daily backups, protecting your data against hardware failure and accidental deletion. Extended retention and point-in-time recovery are available on request.
Secure Development
Security is built into our development process. Code reviews, dependency scanning, and security testing are standard practice.
Password Security
Passwords are hashed using bcrypt with secure salting. We never store plain-text passwords, and staff can reset their own credentials securely.
US-Based Hosting
All data is stored in secure data centers located in the United States, on the US regions of our infrastructure providers.