YourAgencyDesk
SECURITY

Protecting agency access and data

YourAgencyDesk uses layered account, application, and database controls designed to keep each agency's workspace separated and accessible only to permitted users.

Encrypted connections

Application traffic is sent over HTTPS. Authentication and application data are handled through established cloud service providers.

Agency data separation

Database row-level access policies scope records to the signed-in user's agency and role. Agent-facing access is further limited to permitted agent records.

Account safeguards

YourAgencyDesk supports secure password authentication, password recovery, rate limiting, and authenticator-app multi-factor authentication through its authentication provider.

Restricted file access

Training and agency files use private storage with authenticated access policies instead of publicly exposed storage.

Payment information

Subscription checkout and billing management are handled by Stripe. YourAgencyDesk does not store complete payment-card numbers.

Responsible AI use

AI-assisted product features are accompanied by guidance not to enter private client information and are not a substitute for official regulatory or legal sources.

Transparency matters. This page describes current product controls and does not claim a certification or independent audit that YourAgencyDesk has not completed. Review the complete Trust Center for retention, service provider, incident response, and recovery information.

Report a suspected security issue through the responsible disclosure process. Avoid including sensitive client data in the initial message.