eenvoice

Security Policy

1. Our Commitment to Security

At eenvoice, protecting your data is a top priority. We take reasonable and appropriate measures to safeguard the information you trust us with and to maintain the confidentiality, integrity, and availability of our systems.

This Security Policy outlines the practices we follow to help protect your data when you use our services.

2. Infrastructure & Hosting

All eenvoice application data is hosted on Base44, a third-party cloud infrastructure provider that follows industry-standard security practices.

While Base44 provides the underlying infrastructure, eenvoice is responsible for application-level security, access controls, and data handling practices.

3. Payment Security

All payments and subscription billing are processed through Stripe.

  • eenvoice does not store credit card or banking details
  • Stripe is PCI-DSS compliant
  • Payment data is transmitted securely and handled directly by Stripe

You can review Stripe's security practices on their official website.

4. Data Encryption

We use encryption to protect data:

  • In transit: Data is transmitted using HTTPS / TLS encryption
  • At rest: Data stored in our systems is protected using encryption where supported by our infrastructure providers

5. Access Controls

Access to customer data is restricted to authorized personnel only and is based on job responsibilities.

Security measures include:

  • Role-based access controls
  • Strong authentication requirements
  • Limited internal access to production data

6. Account Security

Users are responsible for maintaining the security of their accounts, including:

  • Keeping login credentials confidential
  • Using strong passwords
  • Not sharing account access with unauthorized users

If you believe your account has been compromised, contact us immediately.

7. Monitoring & Incident Response

We monitor our systems for suspicious activity and potential security threats.

In the event of a security incident:

  • We take immediate steps to contain and mitigate the issue
  • We investigate the cause and impact
  • We notify affected users when required by law

8. Data Backups & Availability

We rely on infrastructure-level backups and redundancy provided by Base44 to support data availability and recovery in the event of system failure.

While we strive for high availability, we do not guarantee uninterrupted service.

9. Third-Party Risk

We work with trusted third-party providers (including Base44 and Stripe) and evaluate them based on their security and compliance standards.

eenvoice is not responsible for security incidents caused by third parties outside our reasonable control.

10. User Responsibilities

Security is a shared responsibility. Users should:

  • Ensure invoice and client data entered is accurate
  • Avoid uploading sensitive data not required for invoicing
  • Log out of shared or public devices

11. Changes to This Security Policy

We may update this Security Policy from time to time. Updates will be posted with a revised "Last Updated" date. Continued use of the Services constitutes acceptance of the updated policy.

12. Contact Us

If you have questions, concerns, or would like to report a security issue, contact us at:

Email: support@eenvoice.com

Address:

eenvoice

30 Wall Street, #8053

New York, NY 10005

United States

© 2025 eenvoice. All rights reserved.