Security Policy

Security Policy

Last Updated: July 16, 2026

At Genora, protecting the data and creative work our users entrust to us is a core priority. This Security Policy outlines the practices and safeguards we maintain to keep the Genora platform, your account, and your generated content secure.

1. Infrastructure Security


  • The Service is hosted on infrastructure providers that maintain industry-standard physical and network security certifications.

  • Data in transit is encrypted using TLS (HTTPS) across the entire platform.

  • Sensitive data at rest, including account credentials and payment information, is encrypted using industry-standard encryption algorithms.

  • Access to production systems is restricted to authorized personnel on a need-to-know basis and is logged and monitored.

2. Account Security


  • Passwords are stored using secure, one-way hashing algorithms; we never store passwords in plain text.

  • We recommend using a strong, unique password and enabling any available multi-factor authentication for your account.

  • Users are responsible for maintaining the confidentiality of their login credentials and for all activity that occurs under their account.

3. Payment Security


  • Payment processing for Free, Team, and Pro plans is handled by PCI-DSS compliant third-party payment processors. Genora does not store full credit card numbers on its own servers.

4. Data Handling for Uploads and Prompts


  • Uploaded reference images, brand assets, and prompts are transmitted and stored securely and are only accessible to authorized systems and personnel required to deliver the Service.

  • Access controls and audit logging are applied to systems that process generation requests.

5. Monitoring and Incident Response


  • We monitor our systems for unusual activity, unauthorized access attempts, and potential vulnerabilities on an ongoing basis.

  • In the event of a security incident that affects your personal information, we will notify affected users and relevant authorities in accordance with applicable law, and take prompt steps to investigate and remediate the issue.

6. Vulnerability Reporting

If you discover a potential security vulnerability in the Genora platform, please report it responsibly by emailing plaiterhq@gmail.com with details of the issue. We ask that you:

  • Avoid accessing, modifying, or deleting data that is not your own

  • Give us reasonable time to investigate and address the issue before public disclosure

  • Refrain from testing in ways that could degrade the Service for other users

We appreciate the efforts of security researchers who help us keep Genora safe and will make reasonable efforts to acknowledge valid reports.

7. Employee Access and Training


  • Employee and contractor access to production systems is limited by role and reviewed periodically.

  • Team members with access to sensitive systems are required to follow internal security practices and confidentiality obligations.

8. Third-Party Vendors

We vet third-party service providers (including hosting, analytics, and payment processors) for appropriate security practices before integrating them into the Service.

9. Your Role in Security

Security is a shared responsibility. We encourage users to:

  • Use strong, unique passwords

  • Avoid sharing account credentials

  • Log out of shared or public devices

  • Report suspicious activity to plaiterhq@gmail.com immediately

10. Changes to This Policy

We may update this Security Policy periodically to reflect changes in our practices or for other operational, legal, or regulatory reasons. The "Last Updated" date above reflects the most recent revision.

11. Contact Us

For security questions or to report a vulnerability, contact:

Email: support@genora.com

Create a free website with Framer, the website builder loved by startups, designers and agencies.