Security

Intelligence-grade encryption, built in.

Reputcon holds the keys to your reputation. We protect them with the same class of encryption that guards classified information.

Why it matters

To work for you, Reputcon holds sensitive things: the keys that connect your accounts, your Google Business Profile, your private customer feedback, and the intelligence we build from it. In the wrong hands, that data could damage the very reputation you trust us to protect.

How it works
AES-256-GCM encryption
Every key and connection you store is encrypted with AES-256 in authenticated, tamper-evident mode, so your data cannot be read or quietly altered.
Keys held separately
The master key that unlocks your data is kept completely separate from the database it protects, so a database breach alone reveals nothing.
Isolated per account
Every account is walled off from every other. Your data is never pooled with anyone else's.
Encrypted at rest and in transit
Your information is protected both while it is stored and while it moves, end to end.
The standard
The standard the world trusts

AES-256 is not a Reputcon invention. It is the encryption standard that governments, national security and intelligence agencies, and the armed forces rely on to protect classified information, approved for material at the very highest levels of secrecy. We chose it because, when it comes to your reputation, nothing less is acceptable.

How it works
Where your data actually sits, and who can reach it

Your business data lives in a Postgres database with row-level security switched on, which means access is enforced by the database itself rather than by the application asking nicely. A query for another client’s rows returns nothing, not because the interface hides it but because the database refuses.

The keys you connect, meaning your Google API key and your own AI key if you supply one, are encrypted with AES-256 before they are stored, and the encryption key never leaves the server. They are written from the server and never sent back to a browser, so they cannot be read out of the page you are looking at.

The agency account that supports you is a separate role with its own two-factor requirement, and every destructive action it can take is recorded server-side rather than in the browser that performed it. An audit trail written by the thing being audited is not an audit trail.

Questions
Where is the data hosted?
In the EU, on Supabase’s managed Postgres. Traffic is HTTPS-only with HSTS, and the app sends a Content-Security-Policy that names the hosts it is allowed to contact rather than allowing any.
Can Reputcon staff read my reviews and customer details?
Support access is a distinct role, gated behind two-factor authentication, and every use of it is logged on the server. It exists so somebody can help you when something breaks.
What happens to my data if I leave?
Deleting the account removes the client record, the review history, the customer database, the encrypted keys and the terminal figures, and frees the email address for reuse. It is a real deletion, not a flag.
Do you use my data to train anything?
No. Your reviews and customers are yours. The AI features send what is needed to answer the question in front of them and nothing is retained for training.
Is there anything you deliberately do not collect?
Yes. The QR terminal records no cookie and no persistent identifier for the customer using it, and the website analytics identify nobody, which is why the site carries no consent banner.

Your reputation deserves this level of protection.

Reputcon is opening soon. Join the waitlist and get in before anyone else.

Join the waitlist