Current safeguards
- Protected workspace routes require a signed-in account and active buyer access.
- Every record and file request is checked against the signed-in owner on the server.
- Uploaded file bytes are kept separately from searchable listing data.
- Purchase keys are encrypted before storage and rechecked with Gumroad.
- Temporary PropCon pages use long random links, exclude private documents and expire after 24 hours.
- Public marketing exports require factual, media and marketing confirmations.
- Users can permanently delete individual listings or all app data.
Safe use by agents
Use an agency-approved device and account, lock unattended devices, upload only information required for the listing, check every recipient and destination, and remove sensitive records when the approved handoff is complete.
What the app does not do
It does not automatically publish a listing, syndicate to portals, verify a seller’s identity, replace a mandate, provide legal compliance or guarantee that a third-party destination is secure.
Reporting a concern
Use the support form with the category “Problem”. Describe the affected listing without pasting passwords, identity numbers or private documents. Access can be revoked and app data deleted from the listings library.
Security programme
Security controls will continue to mature with independent review, documented incident response, access logging and brokerage administration as the service grows.
Last updated: 21 August 2026