Traders Ledger
Back to Home

Security

Your trading data deserves bank-level protection. Here's how we keep it secure.

Our Security Measures

Encryption

  • AES-256 encryption at rest
  • TLS 1.3 for data in transit
  • Encrypted database backups

Authentication

  • JWT token-based auth
  • Bcrypt password hashing
  • OAuth2 support (Google, Apple)

Infrastructure

  • Cloud hosting with high availability
  • Regular security updates
  • DDoS protection

Monitoring

  • 24/7 security monitoring
  • Audit logging
  • Intrusion detection

Data Privacy

  • Zero access to your trades: We cannot see your trading data or positions
  • No data selling: Your data is never sold to third parties
  • Private by default: Your journal is completely private
  • Data ownership: You own all your data and can export/delete anytime

Compliance

We adhere to industry standards and best practices:

  • • GDPR compliance for EU users
  • • SOC 2 Type II certification (in progress)
  • • Regular third-party security audits
  • • Penetration testing

Incident Response

In the unlikely event of a security incident:

  • • Immediate investigation and containment
  • • Transparent communication with affected users
  • • Prompt remediation and security improvements
  • • Cooperation with law enforcement if necessary

Your Role in Security

You can help keep your account secure by:

1

Use a strong password

At least 12 characters with mixed case, numbers, and symbols

2

Never share credentials

Keep your password and login information private

3

Log out on shared devices

Always log out when using public computers

4

Report suspicious activity

Contact us immediately if you notice anything unusual

Report a Security Issue

If you discover a security vulnerability, please report it responsibly:

security@tradersledger.com

We appreciate responsible disclosure and will respond promptly to security reports.