Skip to content

Security

Looking after your customers' data.

Your customers trust you with their details. Here is how Threadkite keeps them safe, and what you can do with them when a customer asks.

  1. Your data stays in the UK

    Your organisation's threads, contacts, files and backups are stored in the UK. A US data region is on the way for customers in the United States, and each organisation's data stays in its own region.

  2. Encrypted everywhere

    Everything is encrypted in transit and at rest. The passwords and keys you use to connect providers are encrypted separately and are never shown again once saved.

  3. Two-step sign-in

    Everyone can protect their account with two-step verification. Admins can limit sign-up to your own email domain and choose which inboxes each person can see.

  4. Consent for every customer

    Threadkite records consent for each customer and each channel and checks it before anything is sent. STOP replies and unsubscribes are handled for you.

  5. Erasure and export

    When a customer asks, you can erase them across every thread, or export everything you hold about them. You choose how long messages are kept.

  6. An audit log

    Sign-ins, exports, merges, erasures, permission changes and API key use are all recorded, so you can see who did what and when.

  7. Checked at the door

    Incoming attachments are scanned for viruses, messages from providers are checked for a valid signature, and API use is rate limited for each organisation.

  8. Clear roles under GDPR

    You are the controller of your customer data and we are the processor. Our data processing agreement is part of our terms, and we publish the list of sub-processors we use.

Documents for your records

Read our data processing agreement, the sub-processors we use and our privacy policy. Security question? Ask us.