Security Policy

Last Updated: December 23, 2025

At RegistryConnect, security is not an afterthought—it's the foundation of our platform. We employ bank-grade encryption and strict protocols to ensure your business data is safe, secure, and sovereign.

Encryption

All data is encrypted in transit using TLS 1.2+ and at rest using AES-256 encryption standards.

Data Sovereignty

Your data stays in Australia. We use Australian-based data centers to ensure full compliance with privacy laws.

Regular Audits

We conduct regular security audits and penetration testing to identify and mitigate potential vulnerabilities.

Access Control

Strict role-based access controls (RBAC) ensure that only authorized personnel can access sensitive data.

Infrastructure Security

Our infrastructure is hosted on industry-leading cloud providers within Australia. We employ firewalls, intrusion detection systems (IDS), and DDoS protection to maintain the integrity and availability of our platform.

Payment Security

We do not store your credit card details on our servers. All payments are processed securely by Stripe, a PCI-DSS Level 1 compliant payment processor. This means your financial data is handled with the highest level of security available in the payments industry.

Application Security

Our web application is built with security in mind, utilizing modern frameworks that protect against common vulnerabilities such as:

  • SQL Injection (SQLi)
  • Cross-Site Scripting (XSS)
  • CSRF Attacks

AI Interaction Security

Interactions with our AI Assistant ("Regi") are secured with the same rigorous standards as the rest of our platform.

  • Zero Retention for Training: Your chats are NEVER used to train public AI models.
  • Isolated Environment: AI processing occurs in a secure, enterprise-grade environment.
  • Data Minimization: We only process the data necessary to answer your query.
  • Access Controls: Only authorized staff can review flagged interactions for safety.

For more details, please view our AI Usage Policy.

Incident Response

We have a comprehensive incident response plan in place to address any security events. In the unlikely event of a data breach, we are committed to notifying affected users and relevant authorities in accordance with the Notifiable Data Breaches (NDB) scheme under the Privacy Act.

Reporting Security Issues

If you believe you have found a security vulnerability in our platform, please report it to us immediately. We value the contributions of the security community.

Common Questions