Security and Data Protection

The security and privacy of your data is always our top priority. That’s why we will always follow the highest security standards.

Our security measures

Our goal is to ensure that your data is protected in every situation. We use multi-layered protection and regularly update our systems to stay one step ahead of potential threats. Below is an overview of our main security measures:

  • Encryption
    All client data is strongly encrypted both in transit and at rest to prevent unauthorized access.

  • Access Control
    Access to data is strictly limited, and each client’s data is isolated in a separate environment. Only authorized personnel have access.

  • Regular Security Audits and Updates
    We regularly check the security of our systems and update software to ensure our protection is always up to date.

  • Firewall and Rate Limiting
    All ports except the encrypted port 443 are closed, and traffic is allowed only through Cloudflare IP addresses. Cloudflare enables top-tier DDoS protection, bot detection, and rate limiting for suspicious requests. The server’s IP address is not publicly accessible.

  • Logging and Monitoring
    All access to data is logged, and in the event of security incidents or suspicions, we act immediately. The system automatically monitors for anomalies.

  • Disaster Recovery and Backups
    We regularly create backups to ensure your data is protected even in unexpected situations. If necessary, data can be quickly restored.

Data privacy

Your personal and other data always belong to you. Tarkva OÜ acts as a data processor on behalf of the client and processes data only according to agreed terms.

  • Data Sharing:
    Your data will not be shared with third parties without your permission, except when subcontractors (such as technical partners) are involved with a signed agreement. You will be notified in advance about any such parties, who will be subject to the same security and confidentiality obligations.

  • Data Transfer and Use:
    Information submitted in conversations (texts, documents, etc.) is transferred to a third-party service provider (e.g., OpenAI) only for generating responses, not for model training or publication. OpenAI may retain data for up to 30 days as required by law for crime prevention. Only authorized personnel have access to the data. Tarkva OÜ does not read, use, or process your data for any personal or commercial purposes beyond the agreed service delivery. Your data is never shared with unauthorized persons.

  • Transfer Outside Europe:
    Data is transferred outside the European Economic Area only if sufficient protection and required agreements are in place (e.g., EU-US data protection framework or standard contractual clauses).

  • Data Retention and Deletion:
    All data is retained only during the contract period and is either returned or deleted at the end of the agreement, as per your choice. If you do not make a choice, data will be securely deleted by default.

  • Privacy and Transparency:
    All persons involved in processing your data are bound by confidentiality obligations. You can always request information on what data is processed, for what purpose, and for how long.

  • GDPR and Data Subject Rights:
    All data processing activities comply with the General Data Protection Regulation (GDPR) of the European Union. We assist you in exercising all your data subject rights (including access, correction, deletion, etc.) within 30 days.

Responding to security threats

In the event of security threats or data breaches, Tarkva acts quickly, transparently, and responsibly:

  • Rapid Detection and Response
    We continuously monitor the security of our systems and automatically detect anomalies or suspicious activities. We respond to all incidents immediately to minimize possible damage and restore security.

  • Open Communication and Notification
    If a security incident affects your data, we will notify you as soon as possible, but no later than within 24 hours. If necessary, we will also inform supervisory authorities and conduct any required investigations. You will be informed about the extent, impact, and measures taken regarding the breach.

  • Providing Support and Collaboration
    We work closely with you to restore data or limit damage, and we assist with all necessary actions, including those related to the protection of personal data.

  • Continuous Improvement and Prevention
    We thoroughly analyze each incident and continually enhance our security measures, train our team, and update procedures to reduce future risks.

SECURITY #1

Security that meets
the highest standards

Privacy, confidentiality, and control – our solutions are designed specifically for those who value the protection of their data

Take productivity to a new level

Our AI finds answers in seconds, reduces manual labor by up to 200%, and keeps all data securely on your server.