Your data is SAFER with us.
Safe Accessible Findable Enriched Responsible
Safe Accessible Findable Enriched Responsible
We aren’t just putting an acronym to this; we are deadly serious about keeping your data safe and private. So much so, that it is at the forefront of all our commercial and tech strategies.
Allotap is the parent company to OE 1.8 and NALYC, both of which use your data uniquely but with the same level of high security. For now this overview is about NALYC.
We won’t let you go outside when it’s raining without an umbrella for protection and we deal with your data in the same sensible way. As an authorized Microsoft partner, we work closely with Microsoft to ensure all processes are seamless as everything in NALYC exists in the Microsoft ecosystem. Our back-end servers are deployed on the AzureTM Cloud with constantly updated infrastructure and full redundancy in the event of server failure. In simple terms, we work with Microsoft to show how committed we are to data security; their infrastructure is proven to be reliable and safe.
Our offer to all NALYC users, no matter the subscription type:
FACT: The Azure policy service confers the highest organizational and compliance standards in the market.
Now for the technological part.
At Allotap, we are transparent so let’s get to the point why we don’t have the famous end-to-end encryption and why your data is still safe with us.
We all know that our WhatsApp’s are encrypted and this is one of the reasons why it is so popular. It’s important to note that WhatsApp’s have end-to-end encryption and emails do not. Everyone has tried to do this with emails but it’s complicated…really it is. The email providers would either need to count on everyone using the same provider (that means convincing your Apple obsessed iMail friend to use outlook) or the emails aren’t actual emails, but website links where the encryption is then applied. Alternatively, you use an ugly external tool to encrypt and decrypt the emails (like PGP). In a nutshell, it’s not possible for us and that means that NALYC is unsuitable for certain forms of high-risk exchanges – not just NALYC, the whole concept of email is unsuitable for those exchanges (we recommend Signal or Wire).
So, the golden ticket question: How does NALYC protect your data without end-to-end encryption? Well, it’s through encryption at-rest, at-work, and in-transit, but not end-to-end.
That’s us – the best and most sensible of the crop!
All NALYC employees are bound by confidentiality agreements covering both code and data. They receive annual training in best security and privacy practices. Only those programmers or administrators who need access, have access. The access path is always monitored and requires select programmers to state the valid consent or justification for the specific access session throughout routine maintenance, debugging and/or servicing.
Allotap performs an internal annual security and privacy in compliance with Microsoft Azure Security policies.
All payments are encrypted and processed through Stripe, following the Payment Card Data Security Standard (PCI DSS). Allotap does not have access to any personal credit card information. All billing details received by NALYC are provided through the Stripe API.
All data and back-ups held by NALYC are deleted within 30 days upon receipt of contract termination.
NALYC will never share our users’ data with any third-parties. There are no advertisers as we are 100% ad-free. We simply do not show anything that is yours to anyone else and we continuously work with Microsoft to test our system for vulnerabilities.
We’re going the extra mile because keeping your data safe is our number one priority. If you have any questions or a data privacy concern, please contact info@allotap.com.