Propelly holds your most sensitive financial data. We treat that responsibility the way your auditors do — with encryption, granular access, and a complete, attributable record of every action.
Data is encrypted in transit with TLS 1.3 and at rest with AES-256. Keys are managed in a dedicated HSM and rotated automatically.
Role-based permissions, SSO, and SCIM provisioning. Define exactly who can see and approve what — down to the account.
Every action — human or agent — is logged, timestamped, and attributable. Export an immutable trail for any period in seconds.
Agents can only act inside the thresholds and policies you set. They never move money or post outside their explicit permissions.
Each customer's data is logically isolated, continuously backed up, and recoverable to any point in the last 30 days.
Continuous threat detection, penetration testing, and a documented incident-response plan with defined SLAs.
We'll share our SOC 2 report, pen-test summary, and DPA under NDA — just ask in your demo.