Security

How we handle your data

You're trusting us with your product data, your pricing and your customer relationships. We don't take that lightly.

ISO 27001 certified

An independent auditor reviews how we build software and handle day-to-day operations. We're ISO 27001 certified, and we renew it every year. That covers everything from how we handle code changes and access to production, to how we onboard new team members and respond to incidents. It's not a badge we hang on the wall. It shapes how we actually work.

Encryption

Everything is encrypted. Data in transit, data at rest, every connection between Brightmotive, your systems and your customers' browsers. We use TLS for all connections and AES-256 for data at rest. There's no way to access Brightmotive over an unencrypted connection, and there never will be.

Isolated per customer

Every customer gets their own dedicated database. Your data is completely separated from other customers, not shared in one big database with everyone else. If another customer imports a massive catalogue or runs heavy operations, it won't affect your performance. And if something goes wrong, we can restore your data independently without affecting anyone else.

Hosted in Europe

All data is stored and processed in AWS data centres in Frankfurt, Germany. Your data stays in the EU. AWS is SOC 2 Type 2 accredited and ISO 27001 certified. If you need to demonstrate GDPR compliance or answer questions from your customers about where data lives, the answer is simple: Frankfurt, nowhere else.

Authentication and access control

Role-based permissions let you control exactly who can see and do what. You decide who can edit pricing, who can view order history and who only gets access to specific parts of the catalogue.

Good foundations, because we care. Infrastructure you can trust and a team that takes pride in keeping it running.

Redundant infrastructure
We run on AWS with redundancy across availability zones, automated daily backups and around-the-clock monitoring. Only the people who need access to production have it.
99.99% uptime
Our track record since 2017. Your customers can rely on the catalogue being there when they need it, even during peak hours.
Peer-reviewed code
All code is reviewed before it reaches production. We run regular penetration tests to find vulnerabilities before anyone else does.
Deep monitoring
We spot and respond to issues before they affect you. Our monitoring is detailed enough that we sometimes spot issues on a partner's side before they do.

Questions about security?

We're happy to walk you through our security practices, share our ISO 27001 certificate or answer any questions your team has.

© 2026 Brightmotive