Your data, protected

Kanbo is built on enterprise-grade infrastructure with encryption, authentication, and access control designed to keep your project data safe.

Authentication & Identity

  • Powered by Clerk — enterprise-grade auth with MFA support
  • OAuth 2.0 with Google, GitHub, and email/password
  • Session management with automatic token rotation
  • API key authentication for programmatic access

Data Protection

  • PostgreSQL on Neon — encryption at rest (AES-256)
  • TLS 1.3 encryption for all data in transit
  • Automatic daily backups with point-in-time recovery
  • Data isolation between organizations

Infrastructure

  • Hosted on Vercel (frontend) and Google Cloud Run (API)
  • Auto-scaling infrastructure with no single point of failure
  • DDoS protection via Cloudflare and Vercel Edge Network
  • Deployed in US regions with SOC 2 compliant providers

Access Control

  • Role-based access control (Owner, Admin, Member)
  • Organization-level data isolation
  • Project-level member management
  • Audit trail for ticket changes via history tracking

Responsible disclosure

If you discover a security vulnerability, please report it responsibly. We take all reports seriously and will respond promptly.

security@kanbo.dev

Security FAQ

Where is my data stored?

Your data is stored in Neon PostgreSQL databases hosted in US regions. All data is encrypted at rest using AES-256 and in transit using TLS 1.3.

Can I export my data?

Yes. Kanbo provides a full REST API and MCP server that gives you complete access to your project data. You can export tickets, comments, attachments, and all metadata at any time.

Do you sell or share customer data?

No. We never sell, share, or use your project data for training AI models. Your data is yours. AI features (ticket writing, clarity checks) process text on-demand and do not store or learn from your content.

What happens if I delete my account?

When you delete your account, all your personal data and any organizations you own are permanently removed within 30 days. This includes tickets, comments, attachments, and all associated metadata.

Is Kanbo SOC 2 compliant?

Kanbo uses SOC 2 compliant infrastructure providers (Vercel, Google Cloud, Neon, Clerk). We are working toward our own SOC 2 Type II certification.

Ready to get started?

Try Kanbo free — no credit card required.