Security | BlissNeat
Security
Last updated: March 8, 2026
Our Commitment
Security is a core priority at BlissNeat. We take all reasonable measures to protect your data from unauthorised access, disclosure or loss.
Encryption
- All data is transmitted over HTTPS/TLS encryption
- Passwords are hashed using industry-standard algorithms — we never store plain text passwords
- Sensitive tokens are stored securely and rotated regularly
Access Controls
- Role-based access — employees can only see their own receipts; managers see their team
- Authentication tokens expire automatically
- Failed login attempts are rate-limited
Infrastructure
- Hosted on DigitalOcean infrastructure in secure data centres
- Regular automated backups
- Server access restricted to authorised personnel only
Responsible Disclosure
If you discover a security vulnerability, please report it responsibly to support@blissneat.com. We will acknowledge your report within 48 hours and work to resolve confirmed issues promptly. We ask that you do not publicly disclose the issue until we have had the opportunity to address it.
Contact
Security concerns? Email support@blissneat.com