Security

Summary

We understand the strict levels of privacy required for an email application and are fully committed to protecting your data. We use industry leading authentication protocols, enterprise grade encryption and secure data handling procedures. We ensure comprehensive security for the application, database, network and infrastructure. We monetize our application through a subscription fee and do not under any circumstances share data to provide ads. Our experienced engineering team have built secure products for HSBC, Amazon and Microsoft.

Details

Teamsync Inc ("we" or "us") provide this Security document to detail our policies and procedures regarding keeping customer data and our application secure

Authentication & Access Control

TeamPost uses industry standard "OAuth" authentication that is provided by Google for third party application developers. This gives us access to your data without revealing your password. It also provides you with full control of our access. You can revoke our access at any point in time, by going to 'Connected apps and sites' under your Google account settings.

Secure Infrastructure & Compliance

TeamPost uses multiple data centers with reliable power sources and backup systems to offer redundancy. All transmission is via secure encrypted TLS encryption. TeamPost is built completely on Amazon Web Services(AWS) and adopts AWS recommended best practices. We inherit the control and management environment which AWS provides and is certified via ISO 9001 Global quality standard, ISO 27017 - Cloud specific controls, ISO 27018 Personal data protection, PCI DSS Level 1 Payment card standards, SOC 1 Audit controls report, SOC 2 Compliance controls report, SOC 3 General controls report.

Collection and use of general usage and related statistics

When you visit our website and use our Service, we collect usage statistics. We analyze your use of the service, location, preferences and trends for our own internal statistical and analytical purposes which we may use for improving our marketing and product development, in an aggregated format that will not include personally identifiable information. We use tools such as Google Analytics to analyze this data.

Collection and use of other information

Your email address serves as a unique identifier of your account. TeamPost enables your team to organize emails and create a knowledge base. In order to provide a functional application to you, we process information regarding the emails that have been organized, the people who have been granted access to them and the content. Our functionality is built to work with Google servers using Google provided APIs. We let you track whether people have read emails that you have sent to them from TeamPost and store metadata information for this. This read tracking information is stored and shown to you.

The information is hosted on secure Amazon AWS servers. This data will be deleted from our servers if you do not want to use our application anymore. Your data is processed and made accessible only to you. TeamPost doesn’t sell your personal information to third parties. On your request, we will delete user account and related data. If TeamPost is to be acquired, or have its assets sold or be merged with another entity, user information might be required to be transferred as well. In this scenario, users will have the right to cancel their service and delete their data.

Incident response and remediation

Our systems are monitored 24/7/365 with a number of reliability, performance tracking and exception handling tools. When any issues are detected, our teams are sent a notification and will investigate the issue with due priority. We actively store logs and maintain them for at least 30 days. These logs assist us with identifying and resolving any potential issues. If a serious incident occurs, we will notify our users via email. We work closely with Amazon Web Services(AWS) to ensure that our infrastructure and application remains secure and that any potential issues are patched and addressed expediently.

Vulnerability Management

We periodically conduct vulnerability scans on our applications and network to ensure that there are no critical risks that expose our applications to threats.

Contacting Us

Any requests for access to your information, modification or correction of your information or questions in respect of this policy should be sent to the following email address: support@teampost.co

Last updated: 24th February 2017
© Teamsync Inc. 2017