Security at RenewalDock

Practical safeguards for critical dates.

RenewalDock is designed to minimize sensitive data while protecting the account and operational information required to deliver reminders.

Account protection

Passwords are salted and hashed. Sessions use opaque, server-side tokens stored in secure, HTTP-only cookies.

Scoped data access

Every dashboard query and mutation is scoped to the authenticated account. Database relations cascade safely when account data is removed.

Protected integrations

Payment webhooks are signature-verified, service credentials remain server-side, and production traffic is encrypted in transit.

Reduced data exposure

RenewalDock stores operational metadata and optional reference links—not uploaded identity documents or full payment card numbers. Expired security records are cleaned on a schedule.

Clear boundaries

RenewalDock is a reminder and recordkeeping tool, not a compliance certification service. No internet service can guarantee absolute security or email delivery. Always verify critical requirements with the issuing authority.

  • No sale of personal information
  • No third-party advertising cookies
  • Documented incident-response and data-retention procedures
  • CSV export and self-service account deletion

Report a concern

If you believe an account or RenewalDock data may be at risk, choose “Security issue” in the support form and include only the details needed to investigate. We review credible reports and notify affected parties when law requires it.

Contact security