Encryption by Default
All traffic is protected with TLS 1.3 in transit and data at rest is encrypted with AES-256 on Supabase-managed storage.
Encriptación de nivel bancario y controles de privacidad diseñados para datos confidenciales.
This page summarizes the technical controls used for executive communication data, including transport security, encryption, access policies, retention, and deletion workflows.
All traffic is protected with TLS 1.3 in transit and data at rest is encrypted with AES-256 on Supabase-managed storage.
Row-Level Security (RLS) enforces per-user and per-organization data boundaries. Access is limited to authorized personnel under least-privilege principles.
Voice and video workloads are processed on Azure. This data is not used to train foundation models and follows a 90-day retention policy for uploaded media.
Users can request full account deletion from profile settings using Eliminar mi cuenta, including associated analysis artifacts according to retention policies.
Mi.Coach operates with GDPR-aligned controls and Consent Mode v2 for analytics consent signaling and preferences management.
Security incidents follow documented response procedures with containment, impact analysis, and notification workflows.
If you discover a potential vulnerability, contact our security team and include reproduction steps, impact scope, and evidence.
security@mi.coach