Security
Built to be safe for your data.
We know reporting tools touch a lot of sensitive surface area — code, revenue, customers. Here's exactly what we do to protect it.
Encryption everywhere
All traffic is served over TLS 1.2+. Data at rest is encrypted with AES-256. Secrets are stored in a managed key store — never in the database.
Least-privilege OAuth
Every integration uses OAuth with the minimum scopes required. You can revoke access from the provider at any time and we'll stop pulling.
Isolated workloads
Report runs execute in ephemeral workers. Each run is scoped to a single account and cannot access data from other tenants.
Minimal data retention
We keep only the data needed to run and audit your reports. Delivered report bodies are retained 30 days for run logs, then purged.
No model training on your data
Your data is never used to train third-party LLMs. We disable provider-side logging on eligible models and redact payloads in run logs by default.
Audit-ready logs
Every report run, auth event, and delivery attempt is logged with a timestamp, actor and outcome. Exportable from the dashboard for your auditors.
Where data lives
Primary data resides in the US (GCP us-east1). EU-only data residency is available for teams on our Pro plan; contact security@autoreport.to to enable.
Compliance posture
- • GDPR — we act as your processor. DPA available on request.
- • SOC 2 Type II — audit in progress; trust center launching in H2.
- • Sub-processor list — published in our privacy policy, updated on change.
Delete your data anytime
From your dashboard you can delete any report, integration, or your whole account. Hard deletion propagates through the pipeline within 24 hours. API: DELETE /v1/account.
Responsible disclosure
Found a vulnerability? Email security@autoreport.to with details. We respond within 24 hours on business days. Please avoid disrupting the service, and give us a reasonable window to fix before disclosing publicly.
Stop writing status updates.
Start delivering them.
Connect your first tool in minutes. Your first report is free — no card, no commitment.
- Free forever plan
- No credit card required
- Cancel any time