Trust & security

Bank-level security for your home's most sensitive data.

Wise Property Tax is built by engineers who came from financial-services. Every layer — from the database to the dashboard — is designed to bank standards.

SOC 2Type II audited AES256-bit at rest TLS 1.3in transit GLBAcompliant CCPAcompliant SSOSAML 2.0 ready

How we protect your data

End-to-end encryption

Every byte we store is encrypted with AES-256 at rest. Every request is wrapped in TLS 1.3 in transit. Decryption keys are managed by AWS KMS and never touch our application servers.

Tenant isolation

Your data lives in a logically isolated namespace. A bug or compromise in another customer's record can never expose yours. Background workers run in per-tenant queues.

Zero trust internally

No engineer can read your raw data. Every internal access is logged, audited, and requires multi-party approval. Production access is strictly time-bounded.

Continuous monitoring

24/7 SIEM monitoring, intrusion detection, and weekly third-party penetration tests. We publish a public security advisory page within 72 hours of any qualifying incident.

Multi-factor authentication

Authenticator-app and WebAuthn (passkey) MFA available on every account. Workspace plans can enforce MFA across all users via SAML SSO.

Right to delete

One click from your account page erases every byte we hold about you within 30 days, in compliance with GDPR Article 17 and CCPA §1798.105. We send you the deletion certificate by email.

Compliance

We map our controls to the major frameworks because your data deserves it. Audit reports are available on request under NDA.

  • SOC 2 Type II (annual audit by Prescient Assurance)
  • Gramm-Leach-Bliley Act (financial data privacy)
  • CCPA / CPRA (California consumer rights)
  • NYDFS Part 500 (cybersecurity for financial services)
  • PCI DSS Level 1 (payment processing via Stripe)
  • ISO 27001 (in progress, certification expected Q3 2026)

For enterprise & lender partners

SAML SSO & SCIM

Single sign-on through Okta, Azure AD, Google Workspace, or any SAML 2.0 IdP. SCIM 2.0 provisioning keeps your user directory in sync automatically.

Audit log API

Stream every administrative action to your SIEM (Splunk, Datadog, Sumo Logic) via signed webhooks or our pull-based audit log API.

BAA & DPA available

We sign Business Associate Agreements and EU GDPR Data Processing Agreements as part of our enterprise contracts. Standard clauses + custom riders welcome.

Found something? We want to know.

Wise Property Tax runs a public bug-bounty program. Report a security issue and you'll hear back from a human within 24 hours.

Email security@wisepropertytax.com