Security & Data Protection

Effective Date: 22/02/2026

Chronosense is designed to provide structured compliance monitoring while maintaining appropriate safeguards for organizational data.

This page outlines the general security and data protection measures applied within the platform.

1. Access Controls

Access to the Chronosense platform is protected through authentication controls, including:

  • Secure account login

  • Token-based session management

  • Role-based access within organizations

Each subscription operates as an isolated organization. Users may only access data associated with their organization.

2. Organizational Data Segregation

Chronosense enforces organization-level data separation.

Users cannot access data belonging to other organizations.

Activity within the platform is logged to maintain visibility and accountability across organizational accounts.

3. Escalation & Audit Integrity

The platform uses a structured escalation framework for deadline monitoring.

Alert records are append-only. Escalation events create new records rather than modifying historical entries, preserving audit visibility.

Alerts remain open until acknowledged by an authorised user.

4. Infrastructure & Service Providers

Chronosense utilises established third-party providers to support secure service delivery, including:

  • Stripe for subscription billing

  • Amazon Web Services (SES) for email delivery

  • Twilio for SMS delivery

  • Hosting infrastructure provider for platform hosting

These providers implement their own security and compliance frameworks.

5. Data Protection Principles

Chronosense follows the principles of:

  • Data minimisation

  • Organizational access control

  • Controlled notification delivery

  • Protection against unauthorised access

Personal data is processed only for the purposes of operating and improving the platform.

6. Incident Response

Chronosense maintains internal procedures for responding to suspected security incidents.

Where required by law, affected users will be notified of material security incidents.

7. User Responsibilities

Users are responsible for:

  • Maintaining the confidentiality of their credentials

  • Managing internal access within their organization

  • Ensuring authorised personnel are assigned appropriate roles

8. Limitations

While Chronosense implements safeguards, no system can guarantee absolute security. Users acknowledge that use of online services carries inherent risk.

9. Contact

If you have security-related questions, please contact:

Email: support@chronosenseapp.com