Security Center
Trust and transparency are fundamental. Learn how we protect your data and keep the platform secure.
Security Measures
Encryption in Transit
All connections use TLS 1.2/1.3 with Let's Encrypt certificates. A+ rating on SSL Labs.
Encryption at Rest
Sensitive data is encrypted in the database. Passwords use bcrypt hashing with salt.
Secure Authentication
Authentication via WhatsApp OTP. Sessions with secure JWT tokens and automatic expiration.
Isolated Infrastructure
Dedicated servers in a Brazilian data center. We do not share infrastructure with other clients.
Attack Protection
Rate limiting, WAF, DDoS protection, SQL injection and XSS prevention. 24/7 monitoring.
Continuous Monitoring
Audit logs, anomaly alerts, integrity checks. Rapid incident response.
Legal Compliance
LGPD (Law 13,709/2018)
CompliantFully compliant with Brazil's General Data Protection Law. Processing based on legal grounds, data subject rights guaranteed.
Marco Civil da Internet
CompliantCompliant with Law 12,965/2014. Access logs retained for 6 months as required by law.
Consumer Defense Code (CDC)
CompliantRefund and customer service policies in compliance with the CDC. Full transparency.
How We Handle Your Data
Data Minimization
We only collect the data necessary for the service to function.
Limited Retention
Data is retained only for the necessary period. Automatic deletion after expiration.
Data in Brazil
Your data stays on Brazilian servers. No international transfers.
Accessible DPO
Our Data Protection Officer is available for questions and requests via email.
Availability and SLA
99.9%
Target Uptime
<200ms
Response Time
24/7
Monitoring
Vulnerability Reporting
Found a vulnerability? Contact us at contato@unofficialbrasil.com.br. We take security seriously and respond within 24 hours.