Skip to content
KudosCRM

Legal

Security at KudosCRM

Last updated: June 4, 2026

Overview

Security is foundational to KudosCRM. Here's an overview of how we protect your data. To report a vulnerability, see our Vulnerability Disclosure Policy or email security@kudoscrm.com.

How we protect your data

  • Encryption: data is encrypted in transit (TLS), and sensitive credentials are encrypted at rest. Our cloud infrastructure also provides storage-level encryption.
  • Tenant isolation: every customer's data is strictly separated, and access is scoped to the authenticated user's organisation.
  • Access control: role-based permissions, least-privilege access, and logging of administrative actions.
  • Monitoring & auditing: activity is logged, and we monitor for errors and suspicious behaviour.
  • Abuse protection: rate limiting and brute-force protection guard against attacks.
  • Secure development: automated security scanning, dependency monitoring, and periodic penetration testing are part of how we build.
  • Trusted providers: we work with established infrastructure and service providers and require them to protect your data — see Sub-processors.

Payments

We never store full payment-card numbers. Payments are handled by our payment provider using tokenization.

Continuous improvement

We continuously strengthen our security program and are working toward recognised certifications. For a deeper overview or a security questionnaire, contact security@kudoscrm.com.

Contact

Security & vulnerability reports: security@kudoscrm.com

Start free today

Ready to give your team a CRM they'll actually use?

Start free. Bring your whole team. Cancel whenever (you won't).