Security
Data handling
We process publicly available SEC EDGAR filings. We do not store or process personal financial information beyond what is required for account management and service delivery.
User account data (email addresses, preferences, filter settings) is stored securely and used only for service delivery and communication.
Encryption
Data in transit: All data transmitted between your device and our servers is encrypted using TLS 1.2 or higher.
Data at rest: Sensitive user data is encrypted at rest using industry-standard encryption methods.
Payment information
Payment processing and subscription management are handled in the app. We do not store credit card information on our servers. Payment data is processed by our payment provider in accordance with PCI DSS standards.
Responsible disclosure
If you discover a security vulnerability, please report it to us at security@insiderfilings.co. We appreciate responsible disclosure and will work to address legitimate security concerns promptly.
Please do not publicly disclose vulnerabilities until we have had an opportunity to address them.
Updates
We regularly update our systems and dependencies to address security vulnerabilities. Our security practices are reviewed and updated as needed.