These terms apply to the SMS messaging services operated by MassiveSMS.
1. Security program
We maintain administrative, technical, and organizational measures designed to protect the confidentiality, integrity, and availability of our systems and customer data.
2. Access and infrastructure
Access to production systems is restricted according to operational need. We use authentication controls, encrypted network connections, environment separation, logging, monitoring, backups, and provider security capabilities appropriate to the service.
3. Application and operational security
We apply dependency updates, input validation, rate limiting, secure payment integrations, access reviews, and incident response procedures. Customers remain responsible for strong credentials, authorized users, lawful lists, and secure API key handling.
4. Incident response
We investigate suspected security incidents and take reasonable steps to contain, remediate, and document confirmed incidents. Where legally required, affected customers or authorities are notified without undue delay.
5. Reporting concerns
Report suspected vulnerabilities or account compromise using the contact information below. Please do not publicly disclose a potential issue before we have had a reasonable opportunity to investigate it.
MassiveSMS