How PleoStack protects your data.
A plain account of where your data lives, how access is controlled, and what happens to it — the same questions any team should ask before rolling out new software on a live project.
Data
Project data is hosted on Microsoft Azure infrastructure, which encrypts data at rest and in transit by default. Each organization's data is scoped to that organization within the platform.
Authentication
Sign-in runs on Supabase Auth, with OAuth support for Google, Microsoft, and GitHub. Credentials are never stored in plaintext, and session tokens are managed server-side.
Infrastructure
The application runs on Azure Container Apps, hosted in the East US 2 region, with separate staging and production environments so changes are tested before they reach live projects.
Compliance & data handling
PleoStack's data practices are aligned with GDPR and CCPA principles. Data requests and questions about handling can be sent through the form below.
Sub-processors
The third parties that process data on PleoStack's behalf, in service of running the product.
Questions about data handling?
Send a data request or a security question directly — it goes to the team, not a ticket queue.