Our Commitment to Security

At cece ai, we understand that you're trusting us with sensitive business communications. Security and privacy are our top priorities.

🔐 Data Encryption

Encryption in Transit

All data transmitted between your browser and our servers is encrypted using HTTPS with TLS 1.3.

  • • Login credentials
  • • Email content
  • • API requests
  • • Business information

Encryption at Rest

All data stored in our database is encrypted at rest using AES-256 encryption.

  • • Email messages
  • • User accounts
  • • Business data
  • • Configuration

👤 Authentication & Access

Secure Password Storage:

Passwords hashed using industry-standard algorithms, never stored in plain text

Session Management:

Secure session tokens with automatic expiration

Business Isolation:

Each business's data is isolated and only accessible to authorized users

🏗️ Infrastructure Security

We partner with industry-leading security-focused providers:

Vercel:

Enterprise hosting with automatic DDoS protection

Supabase:

PostgreSQL with row-level security

Postmark:

SOC 2 Type II certified email delivery

Anthropic:

AI processing with strict data privacy

🛡️ Application Security

Input validation and sanitization to prevent injection attacks
XSS protection on all user-generated content
Rate limiting (100 requests/minute per IP)
SQL injection prevention via parameterized queries

🤖 AI Processing Security

We use Anthropic's Claude AI with strict data privacy:

  • Your emails are NOT used to train AI models
  • Data retained for only 30 days for abuse monitoring
  • Encrypted transmission to Anthropic's API
  • SOC 2 Type II certified infrastructure

Report a Security Issue

If you discover a security vulnerability, please report it responsibly:

📧 hello@meetcece.ai

We respond to all security reports within 24 hours.