Datapanda
Ürün
Otomatik Raporlama Reels Analizi Rakip Analizi Rapor Tasarımı
Nasıl Çalışır Fiyatlandırma Blog SSS
Giriş Yap Ücretsiz Başla
Legal

Security Policy

How DataPanda protects your data and infrastructure.

Terms & Conditions Privacy Policy Cookie Policy Security Impressum Data Processing Agreement Data Deletion Refund Policy
Effective as of 1 June 2025

At DataPanda, security is a core part of how we build and operate our platform. This page describes our security practices and how to report vulnerabilities responsibly.


1. Infrastructure Security

DataPanda is hosted on managed cloud infrastructure within the European Union. All data is stored in EU-based data centres. We apply the principle of least privilege across all internal systems and access controls.

2. Data Encryption

All data transmitted between your browser and our servers is encrypted using TLS 1.2 or higher (HTTPS). Data at rest is encrypted using industry-standard AES-256 encryption provided by our infrastructure provider.

3. Authentication & Access Control

User passwords are never stored in plain text. We use bcrypt hashing with a strong cost factor. Sessions are managed via secure, HTTP-only cookies. Access to internal systems is restricted to authorised personnel only, protected by multi-factor authentication.

4. Instagram / Meta API Access

DataPanda accesses Instagram data only via Meta's official Graph API using OAuth 2.0 access tokens. Tokens are stored encrypted and are only used to retrieve data for the authenticated account owner. We do not access, store, or process private messages or any data beyond what the user explicitly authorises.

5. Payment Security

All payment processing is handled by Stripe, a PCI-DSS Level 1 certified payment provider. DataPanda never receives, processes, or stores card numbers or full payment credentials.

6. Logging & Monitoring

We maintain server-side logs and activity logs for security monitoring, anomaly detection, and incident response. Logs are stored securely and access is restricted to authorised personnel.

7. Vulnerability Disclosure

We take security reports seriously. If you discover a potential security vulnerability in DataPanda, please report it responsibly:

  • Email: security@digimarkstudio.com
  • Include a description of the vulnerability, steps to reproduce, and potential impact
  • Do not exploit the vulnerability or access data beyond what is necessary to demonstrate the issue
  • We will acknowledge receipt within 3 business days and aim to resolve critical issues within 14 days

We request that you follow responsible disclosure practices and do not publicly disclose the vulnerability until we have had an opportunity to address it.

8. Incident Response

In the event of a data breach that affects personal data, we will notify affected users and the relevant supervisory authority (BlnBDI) within 72 hours of becoming aware of the breach, as required by GDPR Article 33.

9. Third-Party Security

We carefully evaluate third-party service providers and only work with vendors who meet our security standards. All sub-processors who handle personal data are listed in our Data Processing Agreement.

10. Updates

We continuously review and improve our security practices. This page will be updated when significant changes are made.


🔐 Security issue? Contact security@digimarkstudio.com — we take all reports seriously.

Datapanda

Instagram verilerini anlamlı raporlara dönüştür. Ajanslar ve markalar için.

Ürün

Özellikler Fiyatlandırma Nasıl Çalışır FAQ

Şirket

Hakkımızda Blog İletişim Impressum

Yasal

Kullanım Şartları Gizlilik Politikası Çerez Politikası Veri Silme İade Politikası
Secure payments powered by Payment methods
© 2026 Datapanda.io | Instagram Reporting Tool. All Rights Reserved.
Meta Business API ortağı