SECURITY
Your data stays yours.
Camorna connects to ad platforms, CRMs, and messaging channels that hold sensitive business and customer information. Security is built into how we store credentials, process events, and operate the platform — not bolted on after the fact.
Encryption & infrastructure
Data is encrypted in transit with TLS and encrypted at rest in our cloud infrastructure. Production systems run on hardened, patched environments with network isolation between services. Secrets and API tokens are stored in a dedicated credential vault — not in application logs or browser-accessible storage.
Access control
Camorna follows least-privilege access for employees and automated systems. Production data access is limited, logged, and reviewed. Customer workspaces are tenant-isolated so one account cannot read another's campaigns, leads, or integrations.
OAuth & third-party connections
When you connect Google, Meta, TikTok, or a CRM, Camorna uses platform-standard OAuth flows. Tokens are scoped to the permissions you approve and can be revoked from Camorna or the upstream provider at any time. We do not sell customer data to data brokers or use your CRM records to train models for other customers.
Privacy-conscious measurement
Camorna supports first-party tracking via website SDK and server-side events so you can measure conversions without relying solely on third-party cookies. You control which events are sent, and our privacy policy describes retention, deletion, and subprocessors in plain language.
Compliance posture
Camorna is designed with GDPR-ready data practices, including data-deletion workflows and transparent privacy documentation. We maintain security reviews as part of our development process and work with customers on reasonable security questionnaires for Enterprise deployments. For specific compliance needs, contact our team.