Skip to main content

Security Policy

Beezi is committed to maintaining the security of our platform and protecting the data of our customers and their users. This page describes how we approach security across our systems, how we handle vulnerabilities, and what we do when a security incident occurs.


Security Controls

Infrastructure & Hosting

Beezi's platform is hosted on industry-standard cloud infrastructure. We apply security best practices at the infrastructure level, including:

  • Encryption of data in transit using TLS
  • Encryption of data at rest
  • Access controls and role-based permissions for internal systems
  • Regular review of access rights for team members

Application Security

  • Authentication is enforced for all user-facing and administrative access
  • Sensitive credentials and secrets are managed using secure secret management practices and are not stored in source code
  • We follow secure development practices during the design and build of new features

Access Management

  • Internal access to production systems is restricted to authorized personnel only
  • We apply the principle of least privilege - team members are granted only the access necessary for their role
  • Access rights are reviewed periodically and revoked promptly when no longer needed

Vulnerability Management

We take a proactive approach to identifying and addressing security vulnerabilities:

  • We monitor dependencies and third-party components for known vulnerabilities and apply updates on a regular basis
  • Security issues identified internally are tracked, prioritized by severity, and remediated in a timely manner
  • Critical vulnerabilities are treated as high-priority and addressed as quickly as possible

Responsible Disclosure

If you discover a potential security vulnerability in Beezi, we encourage responsible disclosure. Please report it to us at:
support@beezi.ai

We will acknowledge your report promptly and work to investigate and resolve confirmed issues. We ask that you give us a reasonable time to address the issue before any public disclosure.

Incident Response

Beezi maintains an incident response process to handle security events effectively:

  • Security incidents are identified, escalated, and investigated by responsible team members
  • Affected systems are contained and remediated as quickly as possible
  • Where an incident affects customer data, we notify impacted customers in accordance with our contractual obligations and applicable law
  • We conduct a post-incident review to understand root causes and improve our controls

Data Handling

For information on how Beezi collects, uses, and stores personal data, please refer to our Privacy Policy.

Contact

For security-related inquiries or to report a vulnerability, please contact us at:

support@beezi.ai