Privacy & Security
How Rankfender protects your data and ensures platform security.
Data Protection
Rankfender takes data protection seriously. Your brand data, content, and analytics are private to your workspace.
Encryption
- In Transit: All data is encrypted using TLS 1.2+
- At Rest: Database and file storage are encrypted using AES-256
- API Keys: Stored as hashed values, never in plain text
Access Control
- Role-based access control (Owner, Admin, Editor, Viewer)
- Project-level access restrictions
- API key scoping per project
- Session management with automatic timeout
Infrastructure
- Hosted on secure, SOC 2 compliant cloud infrastructure
- Regular security audits and penetration testing
- Automated backups with point-in-time recovery
- DDoS protection
GDPR Compliance
- Data processing agreements available on request
- Right to data export and deletion
- Data residency options for Enterprise plans
- Cookie consent management
Data Retention
- Active accounts: Data retained as long as the account is active
- Cancelled accounts: Data retained for 30 days, then permanently deleted
- Backups: Retained for 90 days
Security Reporting
If you discover a security vulnerability, please report it to security@rankfender.com. We take all reports seriously and respond within 24 hours.