Security & Data Protection
Effective Date: 22/02/2026
Chronosense is designed to provide structured compliance monitoring while maintaining appropriate safeguards for organizational data.
This page outlines the general security and data protection measures applied within the platform.
1. Access Controls
Access to the Chronosense platform is protected through authentication controls, including:
Secure account login
Token-based session management
Role-based access within organizations
Each subscription operates as an isolated organization. Users may only access data associated with their organization.
2. Organizational Data Segregation
Chronosense enforces organization-level data separation.
Users cannot access data belonging to other organizations.
Activity within the platform is logged to maintain visibility and accountability across organizational accounts.
3. Escalation & Audit Integrity
The platform uses a structured escalation framework for deadline monitoring.
Alert records are append-only. Escalation events create new records rather than modifying historical entries, preserving audit visibility.
Alerts remain open until acknowledged by an authorised user.
4. Infrastructure & Service Providers
Chronosense utilises established third-party providers to support secure service delivery, including:
Stripe for subscription billing
Amazon Web Services (SES) for email delivery
Twilio for SMS delivery
Hosting infrastructure provider for platform hosting
These providers implement their own security and compliance frameworks.
5. Data Protection Principles
Chronosense follows the principles of:
Data minimisation
Organizational access control
Controlled notification delivery
Protection against unauthorised access
Personal data is processed only for the purposes of operating and improving the platform.
6. Incident Response
Chronosense maintains internal procedures for responding to suspected security incidents.
Where required by law, affected users will be notified of material security incidents.
7. User Responsibilities
Users are responsible for:
Maintaining the confidentiality of their credentials
Managing internal access within their organization
Ensuring authorised personnel are assigned appropriate roles
8. Limitations
While Chronosense implements safeguards, no system can guarantee absolute security. Users acknowledge that use of online services carries inherent risk.
9. Contact
If you have security-related questions, please contact:
Email: support@chronosenseapp.com
