Company

Security at Merchant Sentinel

Compliance data is sensitive. We treat the evidence we collect, and the systems that hold it, with the care our customers expect.

Our customers trust us with the findings, screenshots and reports that document merchant risk. Protecting that data — and being transparent about how we do it — is part of the product, not an afterthought.

How we protect your data

  • Encryption in transit and at rest for all stored evidence and account data.
  • Role-based access controls and least-privilege access for internal systems.
  • Isolated scanning infrastructure, with audit logging across the pipeline.
  • Regular backups and a documented incident-response process.

Responsible disclosure

If you believe you've found a security issue, we want to know. Please reach out to our team with the details so we can investigate and respond quickly. We appreciate the work of the security community and will acknowledge reports that help us keep customer data safe.

This page describes our security posture at a high level; customers under NDA can request additional documentation.