Data handling

How we handle your data

You're handing us the only history your business has. Here is exactly what happens to it — the practices every engagement runs under, in writing before any data moves.

Encryption

Encrypted in transit. Encrypted at rest. Isolated throughout.

In transit

Data moves over TLS or SSH only. We never accept or send business data over plain FTP, and we never move it as an email attachment — not even "just this once" to hit a deadline.

At rest

Every client's data sits in its own encrypted storage. One client's data never shares a volume or an encryption key with another's. When your engagement ends, your isolation ends with a wipe, not a shrug.

Access

One named engineer. A logged trail. No credentials in email.

  • One named engineer — Seth Wise — does the work on your rescue. You know who is touching your data, by name, from kickoff to sign-off.
  • Contractors get per-project access only, and it is revoked when their phase of the work ends — not when someone remembers.
  • Your credentials never travel in email or chat. They live in a password-manager vault, or you type them yourself on your own screen during a screen-share.
  • Every engagement keeps an access log — who accessed what, and when. It's yours to see.
Your originals

You keep your own copies until you sign off

Nothing we do requires you to give anything up. You retain your own copies of everything until written sign-off, and our work never alters your source system — we read from it, we don't write to it. If you decide to walk away mid-engagement, you are exactly where you started, minus nothing.

Retention & destruction

Working copies have an expiry date

Thirty days after you accept the work, our working copies are destroyed — or, if you've chosen hosted archival, rolled into your archive. Either way you receive a certificate of destruction stating what was destroyed and when. If you later want the archive itself gone, we destroy it within 7 days of your request and certify that too.

If something goes wrong

You hear it from us, within 72 hours

If we ever discover an incident affecting your data, we commit to notifying you within 72 hours — with the scope of what was affected, the action we've already taken, and what we're doing to remediate. No vague "out of an abundance of caution" emails weeks later. You get the facts while they're still useful.

Contracts

A DPA before any data moves

A data-processing agreement is signed before any of your data moves — on every engagement, no exceptions, no "we'll paper it after kickoff." It puts everything on this page in writing, with your name and ours on it.

HIPAA-covered practice? We are not yet taking HIPAA-covered engagements. Our export guides are free and may still help — and we're happy to point you to the right kind of specialist.
The next step

Questions about how we'd handle your data?
Ask them before anything moves.

Book a 30-minute rescue call or send details first

The call, the scoping, and the quote are free. So are the export guides — even if you do it yourself.