Security & Compliance
1. Data Protection By Design
• We only collect the information necessary to deliver and improve our services.
• Information sharing is restricted to organizations who are working on your transaction.
• We only share information with participants that need access in order to complete your transaction.
• Every instance of data sharing and data access on the platform is tracked.
• You own your data; we simply process it to help you manage transactions more efficiently.
• Every action we take complies with leading privacy regulations, including the GDPR and the Trinidad and Tobago Data Protection Act.
2. Strong Security Measures
We maintain industry-standard technical and organizational safeguards to protect all personal and transaction data:
• Encryption in transit and at rest (AES-256 and HTTPS/TLS).
• Multi-tenant cloud hosting on certified ISO 27001 / SOC 2 infrastructure (AWS Ireland).
• Access controls and authentication so only authorized users see what they need.
• Web Application Firewall (WAF) and intrusion detection to block attacks.
• Regular penetration testing and vulnerability scanning by independent security partners.
• Monitoring and logging to detect unusual activity.
These measures are detailed in Annex 2 of our Data Processing Agreement, which we regularly update to stay ahead of emerging threats.
3. Your Rights And Control
We enable users to securely share confidential information, and we empower all users to have control over their data:
• Access, correction, deletion and restriction options are available directly through the platform.
• If you close your account, your data is securely deleted within 60 days, except where law requires longer retention.
• You can export or request copies of your data at any time.
• We respond promptly to data subject requests and support compliance with privacy authorities.
4. Trusted Sub-Processors
We only work with reputable, security-certified partners, including:
5. Transparency And Compliance
• We notify users promptly of any data breach and assist with required reporting.
• We only process data under your explicit instructions and never sell personal data.
• All data transfers outside the EU are safeguarded by EU Standard Contractual Clauses or equivalent legal mechanisms.
• We undergo regular compliance checks and support audits where required by law.
6. Accountability And Contact
Our Data Protection Officer oversees compliance across all regions where SellReady operates. If you have any queries about our security, please contact our dedicated Data Protection Officer at:

