Security
We build enterprise software for a living, and we hold our own systems to the same standard we hold theirs. Here's a plain account of how we protect your data.
Encryption everywhere
All traffic to our website, chat assistant, and admin dashboard is encrypted in transit (TLS). Data at rest is encrypted at the infrastructure layer by our hosting and database providers.
Row-level access control
Every table in our database enforces row-level security. Application data is only reachable through policies scoped to an authenticated, allowlisted admin identity — not by default.
Secrets stay in secrets managers
API keys and service credentials live only in our hosting provider's encrypted environment configuration, never in source code. Credentials are rotated on any suspected exposure.
Least-privilege admin access
Internal dashboard access is limited to a small, named allowlist of team members, gated behind authentication, with every mutating action written to an audit log.
Data minimization
Chat conversations and associated lead data are automatically purged 60 days after the last activity. We collect only what's needed to respond to your inquiry.
Our Approach
Security review is a required step before any feature touching authentication, payments, or personal data ships — not an afterthought. Every admin-facing change goes through a dedicated security review before deployment.
Compliance Alignment
We engineer client systems to align with GDPR, Ghana's Data Protection Act (Act 843), and ISO 27001 / SOC 2 control principles. Formal certification status varies by client engagement and is confirmed in the relevant project contract — ask your engineering lead if you need a specific attestation.
Reporting a Vulnerability
If you believe you've found a security issue in our website, chat assistant, or infrastructure, we want to know. Email a description and reproduction steps to info@enienatechnologies.com with the subject line "Security Report." Please give us a reasonable window to investigate and remediate before any public disclosure.
info@enienatechnologies.com