Security
How we keep your company’s data safe.
Security is mostly careful mechanics. Here are ours, in plain words, so you can check them.
Two checks on every action
Each page checks whether you may see it, and the server checks again before anything changes. Roles are defined by your company, so "who may issue an invoice" is your answer, and changing it changes what people can do, not only what they can see.
Records no one can rewrite
Key records keep a history that no one can edit or delete, not even from inside the database: payments, payroll, HR settings, attendance corrections and support tickets.
Encrypted in transit and at rest
Every connection is encrypted, and so is the storage underneath. National ID numbers, IBANs and mailbox passwords get an extra layer of encryption on top.
Your company’s data, kept apart
Each company’s data is kept separate from every other company’s. Every request is tied to your company, and every page and action checks it. The database itself enforces this too: every query is limited to your company, so no other company can read your records.
Sign-in protection
Repeated failed sign-ins lock the account for a while, and a bot check stands in front of sign-in and sign-up.
What our staff can see, on the record
Every action our own staff take on a customer workspace is written to an audit log that cannot be edited. Ask us whether anyone at Seen opened your workspace, and the answer is on record.
In short
What protects your data today.
Your roles, checked twice
On every page and every action.
Locked histories
Payments, payroll, HR settings, attendance corrections, tickets.
Encryption
In transit, at rest, and extra for IDs, IBANs and mail passwords.
Data kept apart
Every company separate, enforced in the database.
Sign-in lockout
Plus a bot check on sign-in and sign-up.
Staff audit log
Every staff action on your workspace, recorded.
A person reads reports
Security problems reach a real person.
Your data is yours
Export your records; full export is coming soon.
Questions about security
Where is my data stored?
In a managed database with encrypted storage and automatic backups. If your procurement needs the hosting region and our sub-processors in writing, write to info@seencrm.com and we will send them.
Do you have ISO 27001 or a SOC 2 report?
No, not yet, and we would rather say so. What protects your data today is on this page.
Can I control who in my company sees what?
Yes. Roles are yours to define, and each role is a set of permissions you edit, checked on every page and again on every action.
How do I report a security problem?
Write to info@seencrm.com with what you found. A person reads it and replies.
For security reviewers
A summary of our controls, where data lives, sub-processors, backups and testing. It prints cleanly or saves as a PDF.
Open the security pack