Built to meet the standards of banks and enterprises
Handling identity data is a serious responsibility. We protect the records you send with strong encryption, tight access control and short retention, so you can verify with confidence.
Encryption everywhere
Your data is encrypted in transit with TLS and encrypted at rest. Nothing moves or sits in the clear.
Least privilege access
Access to customer data is limited to the people and systems that need it, with logging and review.
Short data retention
We keep the records you submit only as long as needed to deliver results, then remove them on a schedule.
Hardened infrastructure
The platform runs on secured cloud infrastructure with monitoring, isolation and regular patching.
Authentication and keys
API access uses secret keys scoped per environment, and accounts support strong authentication.
Responsible data use
We hold ourselves and our customers to using death data only for legitimate verification purposes.
What you can count on
We keep our security practices clear and practical. These are the commitments we make to every customer who trusts us with their data.
- Data is encrypted in transit and at rest
- Access follows least privilege and is logged
- Submitted records are retained only as long as needed
- Secrets and API keys are scoped per environment
- Infrastructure is monitored and regularly patched
- We support customer security and vendor reviews
Data handling
You submit only the identity fields needed to run a match. We process those records to return a result, then remove them on a defined schedule. We do not sell the records you send us.
Responsible use
Death data is powerful, so it must be used well. We provide it for legitimate verification such as fraud prevention, claims validation and program integrity, and we expect customers to use results within the rules that apply to them.
Running a security or vendor review?
Our team is happy to walk through our practices and answer your questionnaire.