Security & Trust

Your data stays in the EU, encrypted at rest and in transit. We built Peritiq with privacy as a foundation, not an afterthought.

flag EU-Hosted encrypted GDPR-First lock Encrypted visibility_off No Tracking

cloud

Data Residency

All data is stored on servers in Frankfurt, Germany. Nothing leaves the EU. No US data transfers, no transatlantic routing.

Live
shield

GDPR Compliance

Peritiq is built GDPR-first. We collect only what we need, process with a legal basis, and offer a Data Processing Agreement (DPA) on request for business customers.

Live
lock

Encryption

Data at rest is encrypted with AES-256. All traffic in transit uses TLS 1.3. Database connections are encrypted end-to-end.

Live
passkey

Authentication

Passwords are hashed with bcrypt and never stored in plain text. Session tokens are rotated on login. SSO integration is on our roadmap.

Live
database

Data Isolation

Peritiq uses multi-tenant architecture with strict logical isolation. Each company can only access its own data. Cross-tenant access is impossible by design.

Live
visibility_off

Blind Voting Privacy

Votes in Peritiq are anonymous by design. Not even workspace admins can see who voted what. This removes bias and ensures honest input.

Live
block

No Tracking, No CDNs

We self-host all fonts and assets. No Google Fonts, no external CDNs, no third-party tracking scripts. Your visitors stay invisible to big tech.

Live
delete_sweep

Data Retention & Portability

You control your data. Export it anytime, request deletion under your right to erasure, or close your account and we wipe everything.

Live
verified_user

SOC 2 Certification

We are working toward SOC 2 Type II certification. This page will be updated when the audit is complete.

In Progress

Sub-Processors

We work with a small number of carefully vetted third-party providers. Each one is selected for its compliance posture and data handling practices.

payments
Stripe Payment processing. PCI DSS Level 1 certified. No card data touches our servers.
dns
Hetzner EU hosting in Frankfurt, Germany. ISO 27001 certified. All data stays in the EU.
auto_awesome
OpenAI AI-powered features. Data processing agreement in place. No training on your data.

Questions or Concerns?

If you have questions about our security practices, need a DPA, or want to report a vulnerability, reach out to our security team.

mail security@peritiq.com