Security at CourtzApp

Your trust is our foundation. Learn how we protect your academy's data with enterprise-grade security measures.

Bank-grade encryption | SOC 2 compliant | Zero-access architecture
Security First: CourtzApp is built with security as a fundamental principle, not an afterthought. We employ multiple layers of protection to safeguard your academy's data and operations.
End-to-End Encryption

All data is encrypted using AES-256 encryption both in transit and at rest, ensuring maximum protection.

Multi-Factor Authentication

Optional 2FA for academy admins with support for authenticator apps and SMS verification.

Secure Infrastructure

Hosted on enterprise-grade cloud infrastructure with 99.9% uptime guarantee and automatic failover.

Automated Backups

Daily encrypted backups with 30-day retention and point-in-time recovery capabilities.

Data Protection & Privacy

Data Segregation

Each academy's data is completely isolated with no cross-contamination between accounts.

Data Residency

Your data stays within Indian borders, complying with local data protection regulations.

Zero-Access Policy

Our staff cannot access your academy data without explicit permission and audit trail.

Data Portability

Export your data anytime with our comprehensive data export tools.

Data Ownership
You retain full ownership of your academy's data. We're just the secure custodians.

Access Control & Authentication

Strong Authentication
  • Password complexity enforcement
  • Account lockout after failed attempts
  • Session timeout for inactive users
  • Single Sign-On (SSO) support
Role-Based Access
  • Granular permission system
  • Admin, manager, and staff roles
  • Custom permission templates
  • Audit logs for all actions

Network & Infrastructure Security

Web Application Firewall

Advanced WAF protection against common attacks like SQL injection and XSS.

DDoS Protection

Comprehensive protection against distributed denial-of-service attacks.

SSL/TLS Encryption

All communications encrypted with latest TLS 1.3 protocol.

Compliance & Certifications

ISO 27001
Information Security Management

Certified for international information security standards with regular audits.

SOC 2 Type II
Security, Availability & Confidentiality

Annual third-party audits verify our security controls and procedures.

Data Protection Act
Indian Privacy Laws

Full compliance with Indian data protection and privacy regulations.

GDPR Ready
European Data Protection

Built-in tools for GDPR compliance including data portability and right to erasure.

Incident Response & Monitoring

24/7 Security Monitoring

Our security operations center monitors for threats around the clock with automated response systems and human oversight.

Proactive Monitoring
  • Real-time threat detection
  • Automated security alerts
  • Vulnerability scanning
  • Performance monitoring
Incident Response
  • Rapid response team
  • Automated containment
  • Customer notification
  • Post-incident analysis

Security Best Practices for Academies

Recommended Practices
  • Use strong, unique passwords
  • Enable two-factor authentication
  • Regular staff training on security
  • Keep software updated
  • Review access permissions regularly
Security Warnings
  • Never share login credentials
  • Don't access from public WiFi
  • Avoid suspicious email links
  • Don't install unauthorized software
  • Never bypass security features

Contact Our Security Team

Have security questions or need to report a vulnerability? Our security team is here to help.

Security Email
security@courtz.app
Bug Bounty
bounty@courtz.app
Response Time
Critical: 2 hours
High: 24 hours
Medium: 72 hours