Security & Compliance

1. Data Protection By Design

• We only collect the information necessary to deliver and improve our services.
• Information sharing is restricted to organizations who are working on your transaction.
• We only share information with participants that need access in order to complete your transaction.
• Every instance of data sharing and data access on the platform is tracked.
• You own your data; we simply process it to help you manage transactions more efficiently.
• Every action we take complies with leading privacy regulations, including the GDPR and the Trinidad and Tobago Data Protection Act.

2. Strong Security Measures

We maintain industry-standard technical and organizational safeguards to protect all personal and transaction data:

• Encryption in transit and at rest (AES-256 and HTTPS/TLS).
• Multi-tenant cloud hosting on certified ISO 27001 / SOC 2 infrastructure (AWS Ireland).
• Access controls and authentication so only authorized users see what they need.
• Web Application Firewall (WAF) and intrusion detection to block attacks.
• Regular penetration testing and vulnerability scanning by independent security partners.
• Monitoring and logging to detect unusual activity.

These measures are detailed in Annex 2 of our Data Processing Agreement, which we regularly update to stay ahead of emerging threats.

3. Your Rights And Control

We enable users to securely share confidential information, and we empower all users to have control over their data:

• Access, correction, deletion and restriction options are available directly through the platform.
• If you close your account, your data is securely deleted within 60 days, except where law requires longer retention.
• You can export or request copies of your data at any time.
• We respond promptly to data subject requests and support compliance with privacy authorities.

4. Trusted Sub-Processors

We only work with reputable, security-certified partners, including:

Sub-Processor Location Certification Purpose
Amazon Web Services Ireland ISO 27001 Cloud hosting
Stripe Ireland ISO 27001 Payment processing
Microsoft Ireland ISO 27001 Email & file sharing
Atlassian EU ISO 27001 Support
Zoho EU ISO 27001 CRM
PostHOG EU ISO 27001 Product Analytics

5. Transparency And Compliance

• We notify users promptly of any data breach and assist with required reporting.
• We only process data under your explicit instructions and never sell personal data.
• All data transfers outside the EU are safeguarded by EU Standard Contractual Clauses or equivalent legal mechanisms.
• We undergo regular compliance checks and support audits where required by law.

6. Accountability And Contact

Our Data Protection Officer oversees compliance across all regions where SellReady operates. If you have any queries about our security, please contact our dedicated Data Protection Officer at:

privacy@sellready.com

Simplifying property transactions for everyone

Every delay, missing document, and miscommunication costs you money. SellReady syncs every stakeholder, simplifies every step, and gets you to “deal done” faster.