We take security seriously. Learn about our security measures, compliance standards, and best practices for using our API safely.
All data in transit is encrypted using TLS 1.3. Data at rest is encrypted using AES-256.
Secure API key-based authentication with rate limiting and usage monitoring.
Hosted on secure cloud infrastructure with regular security updates and monitoring.
Strict access controls and audit logging for all system operations.
Follow these recommendations to ensure secure integration with our API:
Keep your API keys confidential and rotate them regularly
Use environment variables to store API keys, never hardcode them
Implement rate limiting on your end to prevent abuse
Monitor your API usage for unusual patterns
Use HTTPS for all API requests
Validate and sanitize all input data
Security, availability, and confidentiality audit
Information security management system
Data protection and privacy regulation compliance
In the event of a security incident, we will:
Found a security vulnerability? We appreciate responsible disclosure.
Email: security@flyto.dev
PGP Key: Available on request
Response Time: Within 24 hours
Subscribe to our security announcements to receive important updates about security patches, maintenance windows, and best practices.