Last updated: January 1, 2025
At Retentive, security is fundamental to everything we do. We understand that you trust us with your learning data, and we take that responsibility seriously. This page outlines our comprehensive security practices and measures.
All data transmitted between your device and our servers is encrypted using industry-standard SSL/TLS protocols.
Your sensitive data is encrypted in our databases using AES-256 encryption standards.
We use Supabase Auth with bcrypt password hashing and secure session management.
Payment processing through Stripe meets the highest security standards (PCI DSS Level 1).
We collect only the data necessary to provide our service and never sell your information.
We conduct regular security assessments and keep all systems updated with the latest patches.
Your data is stored in secure, enterprise-grade infrastructure provided by Supabase, with redundancy and automatic backups. Data centers are:
Each user's data is logically isolated using row-level security policies. You can only access your own data, and our systems enforce strict access controls.
We do not store any credit card information on our servers. All payment processing is handled by Stripe, a PCI DSS Level 1 certified payment processor. This is the highest level of certification in the payment industry.
We collect only the data necessary to provide and improve our service. We do not use third-party advertising or tracking cookies.
We carefully vet all third-party services and ensure they meet our security standards:
Security is a shared responsibility. You can help protect your account by:
In the unlikely event of a security incident, we have procedures in place to:
We are committed to transparency and will communicate openly about security incidents that may affect you.
We continuously improve our security practices through:
We appreciate responsible disclosure of security vulnerabilities. If you discover a security issue, please report it to us immediately at mahirabrar.net
We do not currently have a bug bounty program, but we deeply appreciate researchers who help us maintain the security of our platform.
If you have questions about our security practices, please contact us at: