Last updated: May 2025
Your data stays yours. Full stop. SafeTax is built on a privacy-first architecture. Your financial data is never permanently stored, never sold, never shared. This page explains concretely how we protect your data during processing.
In transit — All communications between your browser and our servers are encrypted via a minimum of TLS 1.2 (TLS 1.3 preferred). No data travels in plain text over the network.
At rest — Data temporarily needed for processing (while generating your report) is stored in environments encrypted to AES-256 standards.
SafeTax is designed to never retain what is not essential:
Access to your account is protected by a password. Two-factor authentication (2FA) is being rolled out and will be available soon.
SafeTax is hosted on Vercel's infrastructure, which applies high standards of physical and logical security, with redundancy and continuous monitoring. The datacenters used are ISO 27001 and SOC 2 certified.
Access to your data is strictly limited to authorised personnel, solely for operations necessary to run the service. No access for commercial or analytical purposes is permitted.
Your data is never sold, shared or used for commercial purposes. SafeTax does not monetise user data. Trying to exploit SafeTax's data would be like trying to crack open a safe… that is almost empty.
In the event of a data breach likely to affect your rights, we commit to:
Have you discovered a security vulnerability on SafeTax? We ask that you inform us responsibly before any public disclosure.
Contact us at: contact@safetax.io We commit to acknowledging receipt within 48 hours and treating the report seriously.
| Measure | Status |
|---|---|
| Encryption in transit (TLS) | Active |
| Encryption at rest (AES-256) | Active |
| Zero retention of tax data | Active |
| No wallet access | By design |
| Two-factor authentication (2FA) | Coming soon |
| ICO notification within 72h | Commitment |
| Responsible Disclosure | contact@safetax.io |