Security at Stakt

Bank-level security for your peace of mind. Your data is protected by industry-leading practices.

Our Security Promise: We treat your data like we'd treat our own. We use the same security measures banks use, we're transparent about our practices, and you control your data at all times.

πŸ”’ Core Security Principles

πŸ”

End-to-End Encryption

All data is encrypted in transit using TLS 1.3 and at rest using AES-256. Your information is unreadable to anyone without proper authorization.

🚫

Zero Password Storage

We never ask for or store your bank passwords. Our extension only reads data when you're already logged into your bank's website.

πŸ›‘οΈ

Read-Only Access

Stakt cannot modify your accounts, make purchases, or change any settings. We're strictly a read-only viewer of your offers.

πŸ”‘ Authentication & Access

Secure Login Methods

Access Controls

πŸ—„οΈ Data Protection

What We Store

Data Type Storage Encryption
Email address Hashed + encrypted ● AES-256
Offer data (merchants, amounts) Encrypted database ● AES-256
Card identifiers (last 4 digits) Encrypted ● AES-256
Bank passwords Never stored ● N/A
Full card numbers Never stored ● N/A
Transaction history Never stored ● N/A

Data Residency & Backups

πŸ” Security Practices

Development & Deployment

Infrastructure

πŸ› Bug Bounty & Responsible Disclosure

We believe in the security community and welcome responsible disclosure of vulnerabilities.

How to Report

Our Promise

πŸ“‹ Compliance & Certifications

πŸ“œ

SOC 2 Type II

Our infrastructure providers maintain SOC 2 Type II certification. We're working toward our own certification.

πŸ”’

GDPR Compliant

We respect your right to data portability, deletion, and privacy. EU users have full GDPR rights.

πŸ‡ΊπŸ‡Έ

CCPA Compliant

California residents have full rights under the California Consumer Privacy Act.

⚠️ Incident Response

While we work hard to prevent security incidents, we have a comprehensive response plan:

πŸ“ž Security Contacts

Have a security concern or question? Here's how to reach us:

🚨

Security Issues

[email protected]
πŸ”’

Privacy Questions

[email protected]
βš–οΈ

Legal Matters

[email protected]

For urgent security matters, include "URGENT" in the subject line and we'll prioritize your message.