Budgetaris Desktop — Security ~/budgetaris.life/security.html

budgetaris.life/security.html

Security, privacy and compliance, by design

Budgeting data is among the most sensitive information a company holds: salaries, unit economics, board-level plans and sometimes acquisition scenarios. We built Budgetaris around the assumption that your planning data deserves the same protection as your production financial systems. This page describes the security model, the compliance work we have done, and the commitments you can hold us to.

Architecture and data protection

Budgetaris Desktop is a native application with a secure synchronization service. The desktop app stores your working data locally, encrypted, so you can plan on a laptop without exposing the model to the public internet. Synchronization happens over TLS 1.3 connections to our infrastructure, and data is encrypted at rest with AES-256. Encryption keys are managed per customer and are not shared with any other customer's data.

We keep your planning data separate from product analytics. We do not mine your models, we do not use your budget data for advertising, and we do not train any model on your numbers. This is a contractual commitment in our terms and our data processing agreement, not a marketing line.

Infrastructure and operations

Our production environment runs in US data centers operated by a major cloud provider, with logical isolation between customers and network segmentation between environments. Access to production systems requires multi-factor authentication, and administrative access is restricted to a small, named group of staff, logged and reviewed quarterly. Backups run continuously, are encrypted, and are tested with periodic restore drills. We maintain a documented incident response plan, and we will notify you without undue delay if we discover a security incident affecting your data.

Certifications and audits

We align our controls with widely recognized frameworks and have them verified by independent auditors. Our compliance program currently covers the following:

SOC 2 Type II. Our controls for security, availability, confidentiality and privacy are audited annually by an independent CPA firm. The most recent report is available to customers under a mutual nondisclosure agreement.

ISO/IEC 27001. Our information security management system is certified, and the certificate covers the Budgetaris platform and the supporting corporate environment.

CCPA/CPRA readiness. Our data practices are designed to support California consumers' rights, as described in our privacy policy.

Business associate support. For healthcare customers who are covered entities, we sign business associate agreements and support the safeguards required by HIPAA in the context of planning data.

Control areaWhat we do
Data in transitTLS 1.3 everywhere, including app sync and integrations
Data at restAES-256 encryption, customer-separated keys
AccessRole-based access control inside the product
IdentitySAML SSO, OpenID Connect and MFA on Enterprise
LoggingImmutable audit trail of every model change
BackupsContinuous, encrypted, restore-tested
Monitoring24/7 alerting with on-call response
TestingAnnual external penetration test and code review program

Access control and identity

Inside the product, every user has a role — owner, editor, contributor or viewer — and every role can be scoped to an entity, a division or a version. A division controller can be granted full control over their division and read-only access nowhere else, and a board member can be given a viewer seat that can see reports but cannot open salary detail. Access changes apply on the next synchronization, and every access grant and revocation is recorded in the audit log.

On Enterprise plans, identity is managed by your own systems through SAML 2.0 or OpenID Connect single sign-on, so when an employee leaves your company, their Budgetaris access dies with their directory account. Multi-factor authentication can be enforced organization-wide, including for desktop sign-in.

Availability and business continuity

Budgetaris publishes its service levels openly. Growth plans carry a 99.5 percent monthly uptime commitment and Enterprise plans carry a 99.9 percent commitment with service credits when we miss it. Our architecture is designed for zero-downtime deployments, and scheduled maintenance is announced at least seven days in advance except for emergency security patches. Because the desktop app keeps working offline, a short platform interruption never blocks your team from planning — work syncs when service resumes.

Data residency and subprocessors

Customer data is stored in the United States. We do not transfer your data to other countries for storage. The subprocessors we use — limited to infrastructure, email delivery and crash reporting — are listed in our trust documentation, which is available to customers on request, and we update it whenever the list changes. None of our subprocessors receive access to your model content except as strictly necessary to operate the service.

Reporting a vulnerability

We take external security research seriously. If you believe you have found a vulnerability in Budgetaris, please report it privately to [email protected]. We will acknowledge your report promptly, keep you informed as we triage it, and we will not pursue legal action against researchers who act in good faith, avoid privacy violations and do not disrupt the service.

Questions?

Security reviews are a normal part of enterprise procurement, and we are set up to move through them quickly. Our team can complete a security questionnaire, provide the SOC 2 report under NDA, and join your vendor review calls. Contact us or write to [email protected] and a human from our Denver office will answer — usually within one business day.