Security Statement

10.1 Introduction

Efiko.pro is committed to maintaining a secure platform for professional identity, credential display, portfolio publishing, CV creation, vCard sharing, appointment booking, QR code generation, and tenant website management.

10.2 Security Measures

Efiko.pro may implement:

  1. SSL/TLS encryption.
  2. Secure account authentication.
  3. Password protection.
  4. Access controls.
  5. Security monitoring.
  6. Logging and audit trails.
  7. Infrastructure protection.
  8. Malware and abuse detection.
  9. Secure payment processing through third-party providers.
  10. Regular backups.
  11. Administrative access controls.
  12. Vulnerability management.
  13. Incident response procedures.
  14. Data minimisation where appropriate.

10.3 User Responsibilities

Users must:

  1. Use strong passwords.
  2. Keep login credentials private.
  3. Secure their email account.
  4. Avoid sharing dashboard access.
  5. Log out from shared devices.
  6. Report suspicious activity.
  7. Keep domain and DNS accounts secure.
  8. Avoid uploading malicious files.
  9. Use plugins responsibly.
  10. Review public profile visibility settings.

10.4 Payment Security

Efiko.pro may use trusted third-party payment processors. Payment details are handled according to the processor’s security standards and policies.

10.5 Domain Security

Users connecting custom domains must secure their registrar account, maintain DNS accuracy, renew domains, and protect domain access credentials.

10.6 Incident Response

If Efiko.pro detects a suspected security incident, we may investigate, contain, remediate, notify affected users, reset credentials, disable affected features, suspend accounts, or take other protective steps.

10.7 Data Breach Notification

Where required by law, Efiko.pro will notify affected individuals and regulators. The OAIC states that a data breach occurs when personal information is accessed or disclosed without authorisation or is lost, and eligible entities must notify when serious harm is likely.

10.8 No Absolute Guarantee

Although Efiko.pro takes reasonable steps to protect the platform, no system can be guaranteed to be completely secure. Users should maintain their own security practices and promptly report concerns.

10.9 Reporting Security Issues

Security concerns should be reported to:

Efiko.pro Security Team
Email: [Insert Security Email]