SECURITY

Built to be audit-ready.

Landlord and tenant data is sensitive. We treat it that way.

Encryption at rest and in transit

All data is encrypted at rest in our Postgres database and in transit over TLS 1.3. Background reports and banking details get an additional application-layer encryption.

Row-level security per landlord

Postgres row-level security scopes every read and write to your landlord account. No tenant ever sees another landlord's data; no landlord ever sees another landlord's rentals.

Audit trail on every action

Every AI draft, approval, notice served, payment processed, and vendor dispatch is logged with timestamp, actor, and reasoning. The record is yours forever.

Data minimization by role

Each AI co-pilot only has access to the data it needs. Owen sees rent. Lena sees compliance context. Cross-domain access is limited and logged.

No model training on your data

We do not use your tenant data, lease text, screening reports, or operational history to train any AI model. The AI uses your data to do your work — that is all.

Fair-housing guardrails

Lena reviews every outbound tenant communication for fair-housing risk before you ever see the draft. Discriminatory language never reaches your inbox.

On the roadmap

  • SOC 2 Type I — beginning the audit once we exit early-access. Target: Q3 of next year.
  • SOC 2 Type II — 12 months after Type I.
  • Annual penetration test by an external firm.
  • Customer-facing data export at any time, no questions asked. Your data is yours.

Found a vulnerability? Please email security@manorwayrentals.com — we triage every report within 24 hours and credit researchers in our hall of fame.