Security
Last updated: Jul 10 2026
Security is core to Genzzi since a single account protects access across our entire ecosystem of products. Here's how we protect you.
1. Authentication
- OAuth 2.0 / OpenID Connect for sign-in, with support for [Google, GitHub, etc.]
- Passwords, where used, are hashed with [bcrypt/argon2] and never stored in plain text
- Sessions use short-lived access tokens with refresh token rotation
2. Data Protection
- Data is encrypted in transit via TLS/HTTPS
- Sensitive data is encrypted at rest
- Access to production data is restricted to authorized personnel only
3. OAuth App Permissions
When you authorize a connected app, it only receives the specific scopes/permissions shown at authorization time — never your password. You can review and revoke these permissions anytime from Account Settings → Connected Apps.
4. Account Protection
- Two-factor authentication (2FA) available for your account [if applicable]
- Login alerts for new devices or unusual activity
- Ability to view and revoke active sessions
5. Infrastructure
Our infrastructure is hosted with [provider], with access controls, monitoring, and regular security reviews in place to protect the systems that run the Genzzi ecosystem.
6. Reporting a Vulnerability
If you discover a security vulnerability, please report it responsibly to security@genzzi.in. Do not publicly disclose the issue until we've had a chance to address it. We aim to acknowledge reports within [48/72] hours.
7. Incident Response
In the event of a data breach affecting your personal information, we will notify affected users as required by applicable law.
Questions about this policy? Contact us at admin@genzzi.in