Security

Security at Athvin

Fan data is sensitive. We take its security seriously at every layer of our infrastructure.

SOC 2 Type II

Annual SOC 2 Type II audits by independent third-party auditors. Reports available to clients under NDA.

Encryption everywhere

All data encrypted in transit using TLS 1.3 and at rest using AES-256. Encryption keys managed separately from data.

Rust memory safety

Built in Rust, which eliminates entire categories of memory safety vulnerabilities (buffer overflows, use-after-free) common in C/C++ systems.

Access controls

Role-based access controls within the platform. SSO integration available. All access logged and auditable.

Reporting a vulnerability

If you discover a security vulnerability in Athvin, please report it to [email protected]. We respond to all security reports within 24 hours and have a responsible disclosure process for validated vulnerabilities.

Data residency

Athvin data is stored in US-based data centers. Clients with specific data residency requirements should contact us to discuss options.