Encryption, access controls, and audit trails that satisfy procurement reviews from banks, healthcare networks, and government suppliers.
TLS 1.3 in transit. AES-256 at rest. Tenant data encrypted with per-team keys derived from a hardware-backed root in AWS KMS.
Zero standing access to production. Engineers request just-in-time roles that auto-expire and log every command.
Every API call, AI request, and recipient view is logged, hashed, and shipped to a tamper-evident store. Anomalies page humans within 60 seconds.
If your security team needs more detail, email security@presender.app for the full questionnaire response (CAIQ, SIG-Lite).
We notify Enterprise customers 30 days before adding any new subprocessor.
| Vendor | Purpose | Region |
|---|---|---|
| Laravel Cloud | Application hosting | EU (Stockholm) |
| AWS S3 | Object storage | EU (Stockholm) |
| Anthropic | AI text generation | US, no training opt-in |
| OpenAI | Voice transcription | US, zero data retention |
| Stripe | Payments | EU + US |
| Postmark | Transactional email | EU |
We pay bug bounties up to €5,000 for valid reports. Please give us 90 days before public disclosure. PGP key on the dedicated page.