Back to Home

Security

Security is at the core of everything we do. Learn how we protect your data and maintain a secure platform.

Security First

Our Security Commitment

Permission Hunter is committed to providing secure handling of your Microsoft 365 data. We implement industry-standard security measures across our platform.

Data Protection

Encryption in Transit

All data is encrypted using TLS 1.2 or higher during transmission between your devices and our servers.

Encryption at Rest

Stored data is encrypted to prevent unauthorized access.

Authentication & Access Control

Microsoft OAuth 2.0

We use industry-standard Microsoft OAuth 2.0 for authentication. Your credentials are never stored on our servers—we only receive access tokens from Microsoft.

Role-Based Access Control (RBAC)

Infrastructure Security

Application Security

Secure Development

Our development lifecycle includes security reviews and regular updates.

Input Validation

All user inputs are validated and sanitized to prevent injection attacks.

CSRF Protection

Cross-site request forgery protection is built into all application endpoints.

Dependency Scanning

Regular scanning for vulnerabilities in third-party dependencies.

Data Privacy

Incident Response

We maintain incident response procedures:

Compliance & Certifications

We're committed to achieving industry-standard certifications. Our current practices are aligned with:

We're planning to pursue SOC 2 certification in 2026.

Reporting Security Issues

If you discover a security vulnerability, please contact our security team at: info@permissionhunter.com

Updates to Security Practices

We continuously review and update our security practices. This page will be updated to reflect any significant changes.