Back to home
Security Policy
Last updated: 1 January 2025
The security of your data is a priority for NutriAID Nutrition Companion. This policy describes the security measures implemented and user responsibilities.
1. Technical security measures
1.1. Data transmission
- All communications are encrypted using TLS 1.2 or higher (HTTPS).
- SSL certificates are automatically renewed and permanently monitored.
1.2. Password storage
- Passwords are stored exclusively as hashes, using secure algorithms (bcrypt or Argon2).
- No employee can see your password in plain text.
1.3. Authentication and sessions
- Sessions are managed through cryptographically signed JWTs (JSON Web Tokens).
- Access tokens expire after a limited period of inactivity.
2. User responsibilities
To keep your account secure, please:
- Use a strong password, unique to this account.
- Do not share your account credentials with other people.
- Log out after using shared or public devices.
3. Reporting vulnerabilities
If you have discovered a security vulnerability, please report it responsibly to security@nutriaid.eu. We commit to acknowledging receipt within 48 hours and remedying the issue.
4. Security breach notification
In the event of an incident, the supervisory authority will be notified within 72 hours and affected users without undue delay.
5. Contact
Security issues: security@nutriaid.eu
Other legal documents