Legal
Last updated: June 2026
How we protect your sensitive financial data
FinSight handles sensitive financial documents on behalf of our clients. We take security extremely seriously and apply industry-standard protections at every layer of the platform.
Security is not an afterthought — it is built into the architecture of the product. This page outlines the specific measures we take to keep your data safe.
In the event of a security incident involving personal data:
If you discover a security vulnerability in FinSight, we ask that you report it responsibly:
We only work with vendors that maintain strong security standards. Below is a summary of the certifications held by our key partners:
| Provider | Role | Certification |
|---|---|---|
| Stripe | Payment processing | PCI DSS Level 1 |
| Supabase | Database hosting | SOC 2 Type 2 |
| Anthropic | AI analysis engine | Enterprise security programme |
| Railway | Application hosting | SOC 2 |
| Resend | Transactional email | SOC 2 |