Security & Data Protection
Our Commitment to Security
At FieldSprout, we take the security of your data seriously. Your business information and customer data are protected with industry-standard security measures and best practices.
Data Encryption
- In Transit: All data transmitted between your browser and our servers is encrypted using TLS 1.2+ (HTTPS)
- At Rest: Sensitive data is encrypted at rest using industry-standard encryption algorithms
- Database Security: All databases are encrypted and access-controlled
Infrastructure Security
- Cloud Provider: Hosted on secure, SOC 2 compliant infrastructure
- Regular Updates: Security patches applied promptly
- Monitoring: 24/7 security monitoring and intrusion detection
- Backups: Regular automated backups with encryption
Access Controls
- Authentication: Secure password requirements and optional two-factor authentication
- Authorization: Role-based access control to limit data access
- Session Management: Secure session handling with automatic timeouts
- API Security: OAuth 2.0 for third-party integrations (Google, Facebook, etc.)
Third-Party Integrations
When you connect third-party services (Google Ads, Google Analytics, Facebook, etc.), we use official OAuth flows and store only the minimum necessary credentials. We never store your passwords for external services.
- Credentials are encrypted and stored securely
- Access tokens are refreshed automatically using secure refresh token flows
- You can revoke access at any time from your account settings
Data Privacy
Your data belongs to you. We follow strict privacy policies:
- We never sell your data to third parties
- We only access your data to provide services or with your explicit consent
- You can export or delete your data at any time
- See our Privacy Policy for details
Compliance
- GDPR: European data protection compliance
- CCPA: California Consumer Privacy Act compliance
- PCI DSS: Payment card data handled by certified payment processors (Stripe)
Incident Response
In the unlikely event of a security incident:
- We have an incident response plan in place
- Affected users will be notified promptly
- We will work quickly to resolve the issue and prevent recurrence
Questions?
If you have security questions or concerns, please contact us at security@fieldsprout.io
Note: This security page outlines our general security practices. For enterprise customers requiring additional security measures, custom SLAs, or compliance documentation, please contact our sales team.