Security & Compliance

Security

Your security and privacy are our top priorities. This page outlines our security practices and how to report vulnerabilities.

✓ Secure by default: All communications are encrypted. Your data is yours—we don't collect or sell it.

Security Practices

🔒 Encryption in Transit

All data transmitted between your device and our servers is encrypted using HTTPS/TLS 1.2+. This prevents interception by third parties.

💾 Data Storage

🔑 Authentication

Our API uses secure, rate-limited authentication. We do not store passwords for user sessions—authentication is stateless and token-based.

🛡️ Infrastructure Security

🧪 Testing & Audits

🚫 Abuse Prevention

Third-Party Security

We partner with trusted providers:

We regularly audit third-party integrations for security compliance.

Compliance

Report a Security Vulnerability

Responsible Disclosure: If you discover a security vulnerability, please email us instead of posting it publicly. We take all reports seriously and will respond within 48 hours.

How to Report

Send a detailed report to:

Email: security@kissmyapp.org

Please include:

What to Expect

✓ Safe Harbor: We will not pursue legal action against researchers reporting vulnerabilities in good faith.

Security Updates

We release security updates regularly. To stay informed:

Best Practices for Users

Questions?

If you have security concerns or questions, contact us:

Security: security@kissmyapp.org
Support: support@kissmyapp.org