Knowledgebase Intermediate Level

Data Security and Compliance

Information about data protection, security measures, and compliance standards.

security compliance data-protection encryption gdpr

Data Security Overview

Understanding how Invexhub protects your business data and maintains compliance with industry standards.

Data Encryption

  • In Transit: All API communications use TLS 1.2+ encryption
  • At Rest: Database encryption using AES-256
  • API Keys: Encrypted storage of all credentials
  • Backups: Encrypted backup storage with geographic redundancy

Access Controls

  • Role-based permissions: Granular access control for team members
  • Two-factor authentication: Required for admin accounts
  • API authentication: OAuth 2.0 and API key management
  • Session management: Automatic timeout and secure session handling

Compliance Standards

  • SOC 2 Type II: Annual compliance audits
  • GDPR: EU data protection compliance
  • CCPA: California privacy law compliance
  • PCI DSS: Payment card industry standards (where applicable)

Data Retention Policies

  • Active data: Retained as long as account is active
  • Logs: 90-day retention for sync and error logs
  • Backups: 30-day rolling backup retention
  • Account deletion: Complete data purge within 30 days

Incident Response

  • 24/7 security monitoring
  • Automated threat detection
  • Incident response team
  • Customer notification procedures

Related Knowledgebases

Continue learning with these related resources

Beginner

Supported Suppliers and Data Sources

Complete list of supported suppliers, their integration types, and available data fields.

Read more
Intermediate

Troubleshooting Sync Issues

Common sync problems and their solutions for supplier and destination integrations.

Read more
Advanced

API Rate Limits and Best Practices

Understanding API rate limits across different platforms and optimization strategies.

Read more

Ready to get started?

Put what you've learned into practice with a free trial.