SECURITY & COMPLIANCE
Enterprise-grade security for your clients' data
Your clients trust you with their guest data. SOC 2, GDPR, encryption at rest and in transit, configurable retention policies -- everything you need to pass their compliance review.
SOC 2 Type II
Audited annually. Full audit logs available on Agency+ plans.
GDPR Compliant
Configurable consent flows, data retention policies, and DPA for EU resellers.
DPA Available
Standard Data Processing Agreement for all resellers handling EU data.
PCI DSS Level 4
Payment processing via Stripe. No card data touches MyWiFi infrastructure.
SECURITY ARCHITECTURE
How we protect your clients' guest data
Encryption everywhere
- TLS 1.3 in transit for all API and portal traffic
- AES-256 at rest for guest data and credentials
- AWS CloudFront CDN with edge-terminated TLS
Access control
- Role-based access control (RBAC) per account
- Client-level account isolation — hard data separation
- Sub-user permissions with view-only client access
- SSO via SAML 2.0 on MSP and Enterprise plans
Data handling
- Guest data stored in your region (US, EU, or APAC)
- Configurable data retention (30/60/90/180/365 days)
- Right-to-erasure tooling for GDPR Article 17
- Automated PII redaction on data exports
Infrastructure
- Hosted on AWS with multi-AZ redundancy
- 99.9% uptime SLA (99.95% on Enterprise plans)
- Automated backups with 30-day retention
- Dedicated hosting available for Enterprise
Monitoring & logging
- Real-time intrusion detection and alerting
- Full audit trail of admin actions
- SOC 2 audit log exports on Agency+ plans
- Automated vulnerability scanning (weekly)
Guest privacy
- Consent-first data capture — configurable per portal
- MAC address anonymization option
- Guest self-service data deletion portal
- No data shared with third parties — ever
FOR MSPS & REGULATED INDUSTRIES
Need a security questionnaire completed?
We complete vendor security assessments for MSPs and enterprise clients regularly. Contact our security team with your questionnaire and we'll return it within 5 business days.
Built for your most compliance-demanding clients
No credit card required. Full platform access with all security features from day one.