Data Security Policy

1. Purpose

This policy is designed to protect the confidentiality, integrity, and availability of all data processed on the PrintMeet platform ("Platform").

2. Scope

This policy covers user accounts, designs, visuals, system logs, and all other types of data. Both individual users and system administrators are included in its scope.

3. Security Measures

  • Data is transmitted encrypted using the TLS (HTTPS) protocol.
  • User passwords are stored in a non-reversible hashed format (e.g. SHA-256 + salt).
  • Servers are only accessible by authorized personnel, and access is logged.
  • Databases and file storage systems operate behind a firewall.

4. Authorization and Access Controls

PrintMeet manages user access based on roles. Different permission levels such as admin, editor, and normal user ensure control over sensitive data.

5. Backup

System data is backed up regularly and stored in a separate region. Backups can only be restored by authorized personnel.

6. Vulnerability and Monitoring

PrintMeet regularly scans systems for vulnerabilities and uses intrusion detection systems (IDS) for traffic analysis. Suspicious activities trigger automatic alerts and blocking mechanisms.

7. Third-Party Services

Our third-party services (e.g. Amazon S3, Stripe, Etsy API) comply with industry standards for data security. All data sharing is done via encrypted connections.

8. Breach Notification

In the event of a data security breach, users will be informed within the legal timeframe and necessary measures will be taken immediately.

9. User Responsibility

  • Users should keep their passwords strong and not share them with third parties.
  • The platform should not be closed on shared devices without logging out.