Security principles
Omnentra uses or is designed to use layered safeguards proportionate to the information and risk involved. Provider-specific controls may vary with the hosting, identity, messaging, payment, and AI services used for a particular workflow.
Encrypted transport
Use current HTTPS/TLS for data moving between users, Omnentra, and connected providers.
Scoped access
Limit accounts and integrations to the access needed for their assigned functions.
Account isolation
Separate customer data logically and validate authorization on protected actions.
Monitoring and response
Record relevant security events and maintain a process for investigating incidents.
Customer responsibilities
- Use unique credentials and multi-factor authentication when available.
- Review team access and connected services regularly.
- Do not submit unsupported sensitive information.
- Report suspicious activity promptly.
Vulnerability reports
Send a clear description, affected URL, reproduction steps, and potential impact to stripe@omnentra.com. Do not access other users' data, disrupt the Service, or use destructive testing. We will acknowledge good-faith reports and coordinate validation and remediation.
Incident notices
If a security incident triggers a legal or contractual notification duty, Omnentra will provide notice in accordance with applicable requirements and available contact information.