Security & Trust

How we handle your data.

We are a small, founder-led company. This page says what we actually do, what we ask of you, and what we do not claim.

Stripe-secure checkout · HTTPS everywhere · We never ask for your passwords.

What we do

  • Card payments go to Stripe. When you pay, your card details are entered with Stripe, not with us. We never see or store your full card number.
  • We never ask for your passwords. When we need access to your website, Google profile, ad accounts or other tools, you invite us as a user with the access the work needs. You can remove us at any time.
  • Client data is kept separate. The platform we use to run your calls, messages and leads keeps each client’s data separate from other clients’ data.
  • Encrypted connections. Our website and client portal are served over HTTPS.
  • Privacy basics. We collect what we need to do the work and to follow up with you. Analytics and advertising scripts on our website load only after you click Accept on the cookie banner. See our Privacy Policy and Cookies page.
  • Least access. We ask only for the access a task needs, and we do not share your data with other clients.

What we ask of you

  • Invite us as a named user instead of sharing a password. Use the role that fits the task, not full owner access unless it is needed.
  • Turn on two-step sign-in for the accounts you give us access to.
  • Tell us when someone who had access leaves your team, so we can update ours too.
  • Do not send card numbers, passwords or sensitive personal data by email, text or chat. If we need something sensitive, we will tell you the safe way to send it.
  • Tell us before work starts if your business handles special categories of data, such as patient health information. Our standard plans are not set up to receive it, so please ask us first.

What we do not claim

We do not hold third-party security certifications or attestations, and we do not offer a contractual uptime commitment on our standard month-to-month plans. If your organization needs specific security terms in writing, talk to us before you buy and we will tell you honestly what we can and cannot sign.

Report a vulnerability or a concern

If you think you have found a security problem on smrtlv.io or in something we run for you, email [email protected] with “Security” in the subject line. Tell us what you found and how to reproduce it. We reply within one business day. Please give us a reasonable chance to fix the issue before you share it publicly, and do not access other people’s data while testing.

Related: Privacy · Terms · Cancellation

Have a Security Question?

Send it over and we will reply within one business day.

Month-to-month Least access No passwords shared