Security at Hestia

Effective Date: April 25, 2026

Protecting user data is a core priority at Hestia. We use reasonable administrative, technical, and operational safeguards designed to protect the confidentiality, integrity, and availability of platform data.

Security Measures

Account Protection

  • Secure authentication systems
  • Password protection
  • Role-based access controls
  • Session management controls

Data Protection

  • Encryption in transit using HTTPS/SSL
  • Secure storage practices
  • Limited internal access to sensitive data

Infrastructure

  • Trusted cloud hosting providers
  • Routine software updates
  • Monitoring for suspicious activity

Payment Security

Payments are processed through trusted third-party providers such as Stripe. Hestia does not store full credit card numbers.

User Responsibilities

Users are responsible for:

  • Protecting passwords
  • Using strong credentials
  • Logging out of shared devices
  • Reporting suspicious activity promptly

Incident Response

If a material security event affecting Hestia systems is identified, we will investigate and take appropriate action, including notifications where required by law.

Questions

For security-related inquiries, please contact: