Account protection
Passwords are salted and hashed. Sessions use opaque, server-side tokens stored in secure, HTTP-only cookies.
Security at RenewalDock
RenewalDock is designed to minimize sensitive data while protecting the account and operational information required to deliver reminders.
Passwords are salted and hashed. Sessions use opaque, server-side tokens stored in secure, HTTP-only cookies.
Every dashboard query and mutation is scoped to the authenticated account. Database relations cascade safely when account data is removed.
Payment webhooks are signature-verified, service credentials remain server-side, and production traffic is encrypted in transit.
RenewalDock stores operational metadata and optional reference links—not uploaded identity documents or full payment card numbers. Expired security records are cleaned on a schedule.
RenewalDock is a reminder and recordkeeping tool, not a compliance certification service. No internet service can guarantee absolute security or email delivery. Always verify critical requirements with the issuing authority.
If you believe an account or RenewalDock data may be at risk, choose “Security issue” in the support form and include only the details needed to investigate. We review credible reports and notify affected parties when law requires it.
Contact security