Security

At Brightcast, we take security seriously. Protecting your data and ensuring a safe experience is fundamental to our mission.

Data Encryption

All data transmitted between your device and our servers is encrypted using industry-standard TLS/SSL protocols (256-bit encryption). This ensures that your information remains secure during transmission.

Sensitive data stored on our servers is encrypted at rest using AES-256 encryption, one of the strongest encryption standards available.

Authentication & Access

We use secure authentication methods, including:

  • OAuth 2.0: Secure sign-in with Apple and Google
  • JWT Tokens: Secure session management with token-based authentication
  • Secure Storage: Credentials stored using platform-specific secure storage (iOS Keychain, Android Keystore)
  • Two-Factor Authentication: Available for enhanced account security

Infrastructure Security

Our infrastructure is built on secure cloud platforms with:

  • Regular security audits and penetration testing
  • DDoS protection and mitigation
  • Automated security monitoring and threat detection
  • Regular security updates and patches
  • Backup and disaster recovery procedures

Privacy by Design

We follow privacy-by-design principles, meaning security and privacy considerations are built into every aspect of our platform from the ground up. We collect only the data necessary to provide our services and never sell your personal information.

Compliance

Brightcast complies with major data protection regulations, including:

  • GDPR: General Data Protection Regulation (EU)
  • CCPA: California Consumer Privacy Act
  • COPPA: Children's Online Privacy Protection Act

Reporting Security Issues

If you discover a security vulnerability, please report it responsibly to our security team. We appreciate your help in keeping Brightcast secure.

Email: security@brightcast.news

Please include details about the vulnerability and steps to reproduce it. We will acknowledge receipt within 48 hours and work to address the issue promptly.

Your Role in Security

You can help keep your account secure by:

  • Using a strong, unique password
  • Enabling two-factor authentication
  • Keeping your app updated to the latest version
  • Not sharing your account credentials
  • Logging out from shared devices