DEFROST

Security

An overview of Defrost security controls and how to request further information.

Existing accepted agreements and customer rights continue. This publication does not make a material contractual change effective before any required notice and acceptance. Contact Defrost.

Security overview

Defrost uses organization-scoped access controls, authorization checks for administrative functions, encryption for supported stored credentials, and sending safeguards for approval, suppression and capacity. Automated application and tenant-isolation tests support these controls.

For evidence relevant to your service or assessment, contact privacy@defrostmail.com. We describe the scope and date of available information and distinguish implemented controls from planned work.

Access and credential protection

Customer workspace records are accessed through organization-scoped application and database controls. Administrative operations require authorization, and supported stored integration credentials are encrypted.

Detailed architecture, credential handling and other security-sensitive information are available for appropriate review through privacy@defrostmail.com. We protect other customers’ information and access secrets when responding.

Monitoring and resilience

Operational monitoring records scheduled-job outcomes. Sending safeguards use available delivery failures, domain authentication, capacity and configured reputation checks. Missing provider data is not treated as proof of a healthy reputation, and SMTP acceptance does not prove inbox placement.

Contact privacy@defrostmail.com for the retention, backup and recovery evidence relevant to your service. Existing contractual commitments continue to apply.

Incidents and vulnerability reports

Report suspected incidents or vulnerabilities to support@defrostmail.com. Include the affected feature and enough detail to investigate without accessing data beyond your authority. Avoid sending secrets or unrelated personal information.

We investigate, contain affected processing and assess notification duties under applicable law and customer agreements. A report does not itself authorize further testing or establish a safe-harbor program.

Assurance information

Contact privacy@defrostmail.com for available security evidence and its scope. This summary does not represent an independent certification or guarantee that every incident can be prevented. Product controls support customers’ own compliance responsibilities.

Procurement and contact

For security assessments, provider details, privacy requests and procurement evidence, contact privacy@defrostmail.com. Suspected incidents or vulnerabilities should be reported promptly to support@defrostmail.com.

Meet Defrost.

Get an update when access opens.

We’ll use your email for early-access updates. No purchase or payment. Privacy policy.