Security, Privacy, and Compliance

How Nygen protects your data with encryption, access controls, GDPR compliance, and third-party provider policies.

← ScarfWeb Knowledge Base

What security measures are in place to protect my data?

We implement multiple layers of security to protect your data, including:

  • Encryption: Your data is encrypted in transit and at rest using industry-standard protocols.
  • Access Controls: We use robust access control mechanisms to ensure only authorized personnel can access your data. All Nygen employees follow two-factor authentication procedures and use secure password storage tools. Their access to our cloud infrastructure expires in 8 hours.
  • Firewalls and Intrusion Detection Systems: We employ advanced firewalls and intrusion detection systems to monitor and protect our network.

How is my data encrypted?

Your data is encrypted using industry-standard encryption protocols both in transit and at rest. This ensures that your data is protected from unauthorized access at all times.

How do you handle vulnerabilities and threats?

Nygen uses automated vulnerability detection systems in its codebase that might arise from other software dependencies. Any identified threats are addressed immediately.

What should I do if I suspect unauthorized access to my account?

If you suspect unauthorized access:

  1. Change your password immediately.
  2. Enable two-factor authentication (if not already enabled).
  3. Contact Nygen support to report the issue and get further assistance.

How can I report a security concern?

If you have a security concern, contact Nygen's support team immediately at support@nygen.io. We take all security reports seriously and will investigate any issues promptly.

How is the integrity of my uploaded files ensured?

We generate SHA256 checksums of your uploaded files and verify them post-upload. This process ensures that the data you upload remains intact and unaltered during the transfer process.

Can I verify the integrity of my data myself?

Yes. We provide the generated SHA256 checksums for your uploaded files. You can compare these checksums with your local files to verify that the data remains unchanged.

How often are data integrity checks performed?

You can request on-demand integrity checks through your account interface to verify the current state of your data. This is available for users in certain subscription plans.

Who can access my data?

We use state-of-the-art access control protocols to ensure your data is secure. Nygen or others can access your data under the following conditions:

  • You have requested support from Nygen, which requires us to examine your files (raw or processed) to debug any issues.
  • You have shared your data privately with someone using their email address, granting them read-only access.
  • You generated a public link for your data, allowing anyone with the link to access a read-only version.

Users' datasets are never indexed, crawled, or otherwise used by Nygen for any purpose other than hosting and providing support.

Do you comply with data protection regulations?

Yes, Nygen complies with all relevant data protection regulations, including GDPR, CCPA, and others. We are committed to protecting your privacy and ensuring your data is handled in accordance with legal requirements.

Which third-party providers does Nygen share my data with?

Your data files, analysis, and any metadata associated with these are not shared with any third party other than our cloud storage provider, AWS.

AWS has ISO/IEC 27018:2019 compliance certification, which means that the privacy of the data stored on AWS is guaranteed to Nygen and, by extension, all of our users.

We do, however, share users' emails with other third-party providers for specific purposes:

  • Auth0: User authentication.
  • Posthog: Activity monitoring (maximum 30-day data retention).
  • UserFlow: Onboarding workflows and informational content.
  • Hubspot: Support and sales activities and notifying users about data.
  • Brevo and SendGrid: Transactional emails.
  • JumpShare: Accepting unstructured data files.
  • Stripe: Payment purposes.

All third-party providers used by Nygen are subject to strict data protection and privacy requirements.

Share this page