Privacy and Security

Security and Reliability Safeguards

At Deal-Trak we know that our customers rely on us as an important part of their business processes and record keeping. We take our responsibilities to our customers seriously, and the security and reliability of the software, systems and data that make up the Deal-Trak application are our top priority.


Security

SSL


All information travelling between your browser and Deal-Trak is protected from eavesdroppers with 256-bit SSL encryption. The lock icon in your browser lets you verify that you aren't talking to a phishing site impersonating Deal-Trak and that your data is secure in transit.


Firewalls


The Deal-Trak application - including your data - rests securely behind Cisco-powered firewalls.


Vulnerability scanning


Deal-Trak servers are scanned for vulnerabilities regularly by AlertLogic, our managed security provider. These scans test our servers both from the Internet and from inside our network, and any newly-identified problems are addressed as quickly as possible.


Intrusion detection


All of the traffic entering and leaving Deal-Trak' network is monitored by an Intrusion Detection System (IDS). Any unusual behaviour is analyzed by AlertLogic's CISSP-certified security experts, and responses are coordinated between them, Rackspace, and our system administration team.


AES Encription


Particularly sensitive information - credit card numbers, bank account information, and your payment gateway account details - are encrypted in our database using AES.


Physical security


The Deal-Trak servers are located in Rackspace's state-of-the-art datacentres, which provide biometric access controls, constant surveillance, redundant power feeds and generators, robust fire suppression, and carefully monitored climate control to protect the servers that store your data and manage your billing.


Reliability

Redundant servers and datacentres


The Deal-Trak infrastructure uses redundant storage and servers to keep the application and your data available in the case of hardware failure - and another set of servers and storage in a geographically separate datacentre in case our primary datacentre is made unavailable by a disaster or other disruption.


Managed hosting


Deal-Trak has chosen Rackspace for our hosting needs. With clients like General Electric, Hershey, Cisco, Pfizer, EMI Music, Scott's, Hilton, Columbia House and the US Marines, we know Rackspace provides the hardware, service and expertise you expect.


Backups


The data in your Deal-Trak account is replicated across multiple database servers in two geographic locations to prevent a single failure from causing data loss. Additionally, that data is backed up nightly to tape and stored in a secure offsite location to ensure that, even in the event of a catastrophe like a tornado or flood, your information will be safe and your records can be quickly restored. If you have any security concerns or questions please feel free to contact us directly.


Responsible Disclosure of Security Vulnerabilities

If you are a security researcher and think you've found a security vulnerability with our service, product, or website please see our responsible disclosure policy page for details on how to report it to us.