Security
Your data is safe with us.
GDPR-aligned. AWS-hosted with VPC isolation, AES-256 encryption at rest, and TLS 1.3 in transit.
Security
How SearchChamp handles your data.
SearchChamp agents read your search data and write to your CMS. We take that access seriously.
Data security
Your data — isolated, encrypted, and yours.
- Encryption at rest with AES-256 and in transit with TLS 1.3 — database backups encrypted with separate KMS keys
- Row-level tenant isolation via Postgres RLS — cross-workspace access is technically impossible, not just policy
- All secrets in AWS Secrets Manager with a documented rotation procedure — no secrets in code or source-controlled config
- Primary data residency in EU (eu-west-1) — transfers to AI sub-processors are safeguarded by Standard Contractual Clauses (see our sub-processor list)
Security postureall green
Encryption at restAES-256✓
Encryption in transitTLS 1.3✓
Tenant isolationenforced✓
Data residencyEU / UAE✓
Access & compliance
Role-based access. Full audit trail.
- Optional app-based (TOTP) multi-factor authentication for every account
- Every destructive action and PII access is audit-logged with actor, timestamp, IP, and resource ID
- GDPR & UAE PDPL aligned — data export and delete on request, DPA available
Access logall clear
Admin loginSSO · verified✓
Report exportaudit logged✓
API key usedscoped · valid✓
Failed login attemptblocked!
GDPR · full audit trail
Questions? Email [email protected]. Vulnerability disclosure to [email protected]; we respond within 48 hours.