Colvy holds some of your most important business relationships. We take that seriously — here’s how we keep your conversations and customer data safe.
Traffic is encrypted in transit with TLS, and your data is encrypted at rest on managed cloud infrastructure.
Internal access to customer data is limited, role-based and granted only when it’s genuinely needed.
Export your contacts and conversations anytime, and ask us to delete your data when you leave.
Card details go straight to Stripe (a PCI DSS Level 1 provider). Colvy never sees or stores card numbers.
Hosted on established managed cloud infrastructure with automated, regular backups.
Systems are continuously monitored so unusual activity is caught and acted on quickly.
The short version — the full detail lives in our Privacy Policy.
Colvy stores the conversations, contacts and content you bring in to run your business — not more than that.
You decide who on your team can see what, and you can export or delete your data on request.
Our Privacy Policy explains what we hold and why, in plain language — no fine-print surprises.
We welcome responsible disclosure. If you believe you’ve found a security issue, email us with the details and steps to reproduce, and we’ll investigate and respond quickly. Please give us a reasonable chance to fix it before sharing it publicly.
security@colvy.com →Need specific security or compliance information for your procurement process? Get in touch and we’ll help. See also our Privacy Policy and Terms.
Bring your customer conversations somewhere they’re looked after. Start free — no card.
Start free