DPA Monitor

Security

Last updated: September 5, 2026

The most reassuring thing about DPA Monitor’s security is how little there is to secure. We deliberately store almost nothing.

What we store

  • Your email address.
  • The list of vendors you’ve chosen to watch.
  • Snapshots of vendors’ public documents, so we can detect changes.

What we never store

No customer data. No uploaded documents. No access to your systems, your vendors’ accounts, or anything private. Everything we read is a public web page anyone can open. If we were breached tomorrow, the worst anyone would find is a list of email addresses and the SaaS tools people watch.

How we protect it

  • Data is encrypted in transit (HTTPS everywhere).
  • Sign-in is passwordless — single-use magic links that expire, so there are no passwords to leak.
  • Access to production data is limited to what’s needed to run the service.

Reporting an issue

Found something? Email security@dpamonitor.com and we’ll respond quickly. We appreciate responsible disclosure.