OfniMail Trust Center

Enterprise-grade
Security by design.

We understand that our API is a critical part of your infrastructure. We maintain the highest security standards to ensure your data is always protected and available.

SOC2 Type II
Certified
GDPR
Compliant
CCPA
Compliant
ISO 27001
Aligned

Data Encryption

All data is encrypted at rest using AES-256 and in transit via TLS 1.3. We support Perfect Forward Secrecy to ensure historical data remains secure.

SSL_CIPHER_SUITE: TLS_AES_256_GCM

Infrastructure Security

Hosted on AWS and Google Cloud with strict VPC isolation. No data is stored on employee devices, and all access requires hardware-based MFA.

REGION: AWS-US-EAST-1 (VPC)

Threat Detection

Continuous monitoring for anomalous activity. We perform real-time audit logging and automated vulnerability scanning across our entire stack.

IPS_ACTIVE: 24/7_SURVEILLANCE

Responsible Disclosure

We believe in the power of the security community. If you've discovered a vulnerability in our platform, we want to hear from you. We maintain a Bug Bounty program to reward those who help us keep our users safe.

Fast triage within 48 hours for high-severity reports.

Safe harbor for researchers following our guidelines.

Have specific security questions?

Our security team is available to help with vendor assessments and security questionnaires for Business and Enterprise customers.

Contact security@ofnimail.com