Security

How we protect your data — and how to tell us if you find a problem.

Last updated: 13 September 2026

Reporting a vulnerability

If you believe you have found a security issue in CreatifyHQ, please email security@creatifyhq.com. Please include enough detail for us to reproduce it — the endpoint or page, the steps you took, and what you observed.

Safe harbour

We welcome good-faith security research and will not pursue legal action against researchers who follow this policy. Please avoid privacy violations, destruction of data, and degradation of our service, and give us reasonable time to fix an issue before disclosing it publicly.

Out of scope: social engineering of our team, physical attacks, denial-of-service testing, and findings against our providers’ own infrastructure.

How we protect your data

Our security programme

We maintain a documented information security programme covering access control, change management, incident response, business continuity and vendor management. We are working towards SOC 2 and ISO/IEC 27001 readiness. If you are evaluating CreatifyHQ for your organisation and need more detail, contact us and we will share what we can under NDA.

Related pages

Sub-processors · Privacy Policy · Data Processing · GDPR · security.txt

Ready to get started?

14-day free trial. No credit card required.