Trust
Security at MyHandl
MyHandl uses layered controls to protect customer accounts, tenant data and connected services.
Account protection
Protected application routes require authenticated sessions. Business and staff access is role-scoped, and platform administration is restricted separately.
Tenant isolation
Business data operations are scoped to the authenticated organisation so one customer cannot access another customer's records.
Secrets and webhooks
Integration credentials are stored server-side. Supported webhook requests are verified before processing, and sensitive values are not exposed through customer pages.
Reporting concerns
Contact MyHandl promptly if you believe an account, integration or piece of customer data may be at risk. Include enough detail for the team to investigate without sending passwords or API keys.