SECURITY & COMPLIANCE

Enterprise-grade security for your clients' data

Your clients trust you with their guest data. SOC 2, GDPR, encryption at rest and in transit, configurable retention policies -- everything you need to pass their compliance review.

SOC 2 Type II

Audited annually. Full audit logs available on Agency+ plans.

GDPR Compliant

Configurable consent flows, data retention policies, and DPA for EU resellers.

DPA Available

Standard Data Processing Agreement for all resellers handling EU data.

PCI DSS Level 4

Payment processing via Stripe. No card data touches MyWiFi infrastructure.

SECURITY ARCHITECTURE

How we protect your clients' guest data

Encryption everywhere

  • TLS 1.3 in transit for all API and portal traffic
  • AES-256 at rest for guest data and credentials
  • AWS CloudFront CDN with edge-terminated TLS

Access control

  • Role-based access control (RBAC) per account
  • Client-level account isolation — hard data separation
  • Sub-user permissions with view-only client access
  • SSO via SAML 2.0 on MSP and Enterprise plans

Data handling

  • Guest data stored in your region (US, EU, or APAC)
  • Configurable data retention (30/60/90/180/365 days)
  • Right-to-erasure tooling for GDPR Article 17
  • Automated PII redaction on data exports

Infrastructure

  • Hosted on AWS with multi-AZ redundancy
  • 99.9% uptime SLA (99.95% on Enterprise plans)
  • Automated backups with 30-day retention
  • Dedicated hosting available for Enterprise

Monitoring & logging

  • Real-time intrusion detection and alerting
  • Full audit trail of admin actions
  • SOC 2 audit log exports on Agency+ plans
  • Automated vulnerability scanning (weekly)

Guest privacy

  • Consent-first data capture — configurable per portal
  • MAC address anonymization option
  • Guest self-service data deletion portal
  • No data shared with third parties — ever

FOR MSPS & REGULATED INDUSTRIES

Need a security questionnaire completed?

We complete vendor security assessments for MSPs and enterprise clients regularly. Contact our security team with your questionnaire and we'll return it within 5 business days.

Built for your most compliance-demanding clients

No credit card required. Full platform access with all security features from day one.