Trust center
Security, privacy & reliability, in one place
Everything you need to evaluate Inno Message with confidence — our security posture, compliance controls, data handling and live service status.
Quick facts
- Passwords hashed with bcrypt; sessions hardened & rotated on login
- CSRF protection on every mutating action (HTTP 419 on mismatch)
- PDO prepared statements everywhere — no raw SQL interpolation
- Output escaped with htmlspecialchars to prevent XSS
- TLS with certificate verification on all provider calls
- HMAC-SHA256 verification of inbound Meta webhooks
- Multi-layer audit logs (payments, messages, settings, logins)
- Data access & deletion controls for GDPR-aligned operations
Sub-processors
Who helps us deliver
| Provider | Purpose | Data processed |
|---|---|---|
| WhatsApp / Meta | WhatsApp, Messenger & Instagram delivery | Recipient identifiers & message content |
| SendGrid | Email delivery & event tracking | Recipient email & message content |
| Twilio | SMS delivery & status callbacks | Recipient phone number & message content |
You bring your own provider accounts — message content flows through the providers you configure.
Security questions or disclosures? Email
[email protected].
We're happy to support vendor security reviews and questionnaires.