Back to Home
Security
Your trading data deserves bank-level protection. Here's how we keep it secure.
Our Security Measures
Encryption
- AES-256 encryption at rest
- TLS 1.3 for data in transit
- Encrypted database backups
Authentication
- JWT token-based auth
- Bcrypt password hashing
- OAuth2 support (Google, Apple)
Infrastructure
- Cloud hosting with high availability
- Regular security updates
- DDoS protection
Monitoring
- 24/7 security monitoring
- Audit logging
- Intrusion detection
Data Privacy
- Zero access to your trades: We cannot see your trading data or positions
- No data selling: Your data is never sold to third parties
- Private by default: Your journal is completely private
- Data ownership: You own all your data and can export/delete anytime
Compliance
We adhere to industry standards and best practices:
- • GDPR compliance for EU users
- • SOC 2 Type II certification (in progress)
- • Regular third-party security audits
- • Penetration testing
Incident Response
In the unlikely event of a security incident:
- • Immediate investigation and containment
- • Transparent communication with affected users
- • Prompt remediation and security improvements
- • Cooperation with law enforcement if necessary
Your Role in Security
You can help keep your account secure by:
1
Use a strong password
At least 12 characters with mixed case, numbers, and symbols
2
Never share credentials
Keep your password and login information private
3
Log out on shared devices
Always log out when using public computers
4
Report suspicious activity
Contact us immediately if you notice anything unusual
Report a Security Issue
If you discover a security vulnerability, please report it responsibly:
security@tradersledger.comWe appreciate responsible disclosure and will respond promptly to security reports.