search
Security at Billit

Our focus on Compliance & Trust

Billit takes security very seriously—Clients trust us with their data. We use a combination of enterprise-class security features and comprehensive audits of our applications, systems, and networks to ensure that your data is always protected, which means every customer can rest easy.

Billit - Security & Trust

Privacy

We are committed to ensuring the privacy of your data. We’re further committed to preventing unauthorized access to that data. Our Privacy & Cookie Policy and Data Processing Agreement details what data is collected from our customers, how we use it, and how it is stored.

Security

Our customers trust us with critical data contained within their finances and related to their business efforts. We work hard to ensure every bit of data is safe and protected.

  • All commits go through mandatory code and security review, along with examination by static analysis.
  • Our architecture implements safe-by-default principles to consolidate user input, authorization, and business logic.
  • All data access and mutation goes through a framework utilizing strong typing and parameterization to eliminate SQL Injection attacks, as well as enforcing the presence of an anti-CSRF token prior to any data mutation.
  • We utilize a strict Content Security Policy and a safe-by-default templating language to effectively neutralize Cross-Site Scripting (XSS).
  • We encrypt all network communications with SSL/TLS accompanied HTTP Strict Transport Security (HSTS), including being HSTS preloaded in most major browsers.
  • All requests pass through multiple rate-limiting methods to protect against brute-force attacks.
  • We don't store passwords; we store hashes
  • Two-factor authentication is available to further restrict access to accounts.
  • Role-based access control allows for granular permissions for team members.
Security

Compliance

We provide our users with a service, and they look to us to ensure we have adequate internal controls over our systems and their data. Therefore we engage ourselves to stay compliant by gaining important certifications.

Transparancy

We believe in transparency when it comes to our platform uptime, incidents, and service level agreements, details of which are available on our status page.

We go for 99.99% uptime.

FAQ's about trust and compliancy with Billit