Security & Compliance

Our Approach to Security & Compliance

Everyday Digital is committed to providing high standards in security and compliance. By following best practices, we've provided built-in components to fulfill a range of platform security and data privacy obligations.

Secure By Design
Server Protection & Recovery

Our security coverage extends from apps, all the way up to dedicated or virtual environments where built-in controls mitigate attacks, and trusted guidelines are in place to disable high-risk access. For recovery, we provide on-site and off-site (encrypted-at-rest) backups for recovery.

Access & Hardening

Our technology is designed not only for user access, but account and level access too. This allows a tiered approach to access hardening and mitigates the exploitation of user system rights, the ability to modify other accounts’ data, and unauthorised executions on data or functions.

Attack Defenses & Monitoring

Built-in controls track and defend known attack patterns such as injections and brute force attempts, and monitor each attack with defense notifications, as well as block mechanisms so that security teams are alerted early and can respond proactively.

Permission-Based Validation

Our technology has built-in controls to validate all appropriate functions, methods, data, and features before being allowed to execute or access. This can be a block of code, a row in the database, a physical directory, a physical file, or features.

Guided Standards

In addition to taking our own security approaches, we also refer to the OWASP Top 10 and ISO27001 for guidance on implementing new mitigation recommendations.

Private AI Containers

Our technology provides the option to deploy AI models in private containers, ensuring that sensitive data used for AI processing remains secure and isolated from external access.

Privacy By Design
GDPR Gold Standard

We are committed to protecting user privacy and providing secure products that are compliant with the Global Data Protection Regulation (GDPR).

Privacy-First Design

Our technology is designed with privacy in mind, ensuring that user data is protected and handled responsibly. We implement robust security measures to safeguard personal information and maintain user trust.

Data Transparency

We value data transparency and strive to provide our users and customers with the tools and information they need in order to achieve such transparency. Our comprehensive data flow solutions ensure that users and customers can trust the apps and services they interact with, creating a secure, reliable experience.

Explicit Consent

Apps built with Everyday technology take an explicit consent approach to collecting personal, location, and contact data; a privacy-first, trusted experience by default.

Right to Withdraw

We’ve built-in an easy-to-use withdraw feature that allows app users to request access to their data, data erasure, or for their account to be deleted quickly and effortlessly.