Security Overview
We provide this overview so that you can better understand the security measures we’ve put in place to protect the information that you store using Datamolino.
Secure Storage
We encrypt the files that you store on Datamolino using the AES-256 standard, which is the same encryption standard used by banks to secure customer data. Encryption for storage is applied after files are uploaded, and we manage the encryption keys.
Datamolino uses Amazon S3 for data storage. Amazon stores data over several large-scale data centers. According to Amazon, they use military grade perimeter control berms, video surveillance, and professional security staff to keep their data centers physically secure.
You can find more information about Amazon’s security at the Amazon Web Services’ website.
Amazon and Datamolino also employ significant protection against network security issues such as Distributed Denial of Service (DDoS) attacks, Man in the Middle (MITM) attacks, and packet sniffing.
Secure Transfers
Your files are sent between Datamolino’s desktop clients and our servers over a secure channel using 256-bit SSL (Secure Sockets Layer) encryption, the standard for secure Internet network connections.
Your files are sent between Datamolino’s mobile apps and our servers over a secure channel using 256-bit SSL encryption where supported.
Your Data is Backed Up
Datamolino and Amazon keep redundant backups of all data over multiple locations to prevent the remote possibility of data loss.
Privacy
A copy of our full privacy policy can be found at: Privacy policy
We guard your privacy to the best of our ability and work hard to protect your information from unauthorized access.
Datamolino and Datamolino‘s employees are prohibited from viewing the content of files you store in your Datamolino account, and are only permitted to view file metadata (e.g., file names and locations) except: (i) to maintain, provide or improve the Service; (ii) to help you and resolve your support requests; or (iii) as Datamolino believes, in its sole opinion, is necessary to comply with or avoid the violation of applicable law or regulation or to cooperate with law enforcement. Like most online services, we have a small number of employees who must be able to access user data for the reasons stated in our privacy policy (e.g., when legally required to do so). But that’s the rare exception, not the rule. We have strict policy and technical access controls that prohibit employee access except in these rare circumstances. In addition, we employ a number of physical and electronic security measures to protect user information from unauthorized access.
Third-party Apps
If you choose to access Datamolino using third-party applications (“apps”), be aware that those apps utilize their own security protocols and have their own privacy policies. If you’re not comfortable with the privacy and security features of those apps, you shouldn’t use them to access Datamolino. For example, third-party apps might not employ encryption when transmitting data, might collect information that Datamolino does not, and might use information differently than Datamolino does.
Compliance with Laws and Law Enforcement
As set forth in our privacy policy, Datamolino cooperates with law enforcement agencies when it receives valid legal process, which may require Datamolino to provide the contents of your private Datamolino. In these cases, Datamolino will remove Datamolino’s encryption from the files before providing them to law enforcement.
I think I’ve found a security exploit. Where do I report security concerns?
We take a number of measures to ensure that the data you store on Datamolino is safe and secure. While we’re very confident in our technology, we recognize that no system can guarantee data security with 100% certainty. For that reason, we will continue to innovate to make sure that our security measures are state of the art, and we will investigate any and all reported security issues concerning Datamolino’s services or software. For a direct line to our security experts, report security issues to security@datamolino.com.
We’ll fully credit anybody whose reports lead to the improvement of Datamolino security. A list of those who have contributed reports leading to a bug or security issue can be found on our special thanks page.