Legal
Security
Last updated: February 24, 2026
We take the security of the Gane website and platform seriously. This page describes our security practices and how to report issues.
1. How We Protect Your Data
We use a combination of administrative, technical, and organizational safeguards designed to protect information, including:
- Encryption in transit: all connections to gane.ai and the Gane platform use TLS/HTTPS encryption
- Encryption at rest: sensitive data is encrypted at rest using industry-standard methods
- Access controls: least-privilege access for team members and systems that handle data
- Infrastructure security: hosted on enterprise-grade cloud infrastructure with built-in redundancy and security monitoring
- Email security: outbound marketing emails sent through the Platform use authenticated sending (SPF, DKIM, DMARC) via SendGrid
- Monitoring and logging: continuous monitoring for unauthorized access, anomalous activity, and potential threats
- Vendor due diligence: we evaluate the security practices of key service providers (hosting, email delivery, analytics)
2. Platform Security
For customers using the Gane platform:
- Tenant isolation: each customer's data is logically isolated within our multi-tenant architecture
- Authentication: secure login with password hashing / SSO support
- API security: API access is authenticated and rate-limited
- Data handling: customer content and contact data are processed in accordance with our Privacy Policy and any applicable data processing agreement
3. Your Role
You can help protect your account and data by:
- Using strong, unique passwords for your Gane account
- Keeping your browser and devices up to date
- Avoiding sharing account credentials
- Notifying us promptly if you suspect unauthorized access to your account
- Being cautious about phishing attempts — we will never ask for your password via email
4. Reporting Security Issues
If you believe you have found a security vulnerability, please contact us at: security@gane.ai
Please include:
- A description of the issue
- Steps to reproduce the vulnerability
- Any relevant screenshots or logs
We ask that you:
- Avoid violating privacy or disrupting services during your research
- Avoid accessing data that is not yours
- Give us a reasonable time to investigate and remediate before any public disclosure
We appreciate responsible disclosure and will acknowledge your report promptly.
5. Incident Response
If we become aware of a security incident involving personal information, we will:
- Investigate and take steps to contain and remediate the issue
- Notify affected individuals and regulators as required by applicable law
- Conduct a post-incident review to prevent recurrence
6. Contact
Security questions or concerns: security@gane.ai
General inquiries: hello@gane.ai