Security First

Your financial data is protected with enterprise-grade security at every level.

Multi-Layered Protection

Defense in depth for your peace of mind

🔐 Authentication

Clerk Auth with MFA

JWT token validation

Session management

🌐 Network

Cloudflare Zero Trust

DDoS protection

WAF & rate limiting

🗄️ Data Storage

AES-256 encryption

AWS KMS keys

Encrypted backups

🔗 Connections

Plaid secure API

TLS 1.3 transport

OAuth 2.0 flows

SOC 2-Aligned Controls: Our security architecture follows industry best practices with immutable audit logs, continuous monitoring, and regular security assessments.

Security Architecture

How we protect your data at every step

Data Protection Flow

Your Device
🔒 TLS 1.3
Cloudflare
🛡️ WAF + DDoS
Auth Layer
🔐 Clerk MFA
Application
⚙️ API Gateway
Database
🗄️ AES-256 at rest

Every connection is encrypted, authenticated, and logged for security.

Security Features

Built-in protection you can trust

🔒

End-to-End Encryption

All data is encrypted in transit using TLS 1.3 and at rest using AES-256 encryption with AWS KMS-managed keys.

🔐

Multi-Factor Authentication

Require multiple forms of verification before accessing your account, powered by Clerk's enterprise authentication.

🛡️

Zero Trust Architecture

Built on Cloudflare Zero Trust with continuous verification of every request and connection.

📝

Immutable Audit Logs

Complete, tamper-proof audit trail of all data access and operations for transparency and accountability.

🔍

Anomaly Detection

Automated monitoring for unusual access patterns or suspicious activity with real-time alerting.

🔄

Encrypted Backups

All backups are encrypted and stored securely with geographic redundancy for disaster recovery.

DDoS Protection

Enterprise-grade DDoS mitigation through Cloudflare ensures service availability even under attack.

🎯

Rate Limiting

Intelligent rate limiting prevents abuse and protects against automated attacks on your account.

🔑

Secure Key Management

AWS KMS manages encryption keys with automatic rotation and hardware security module (HSM) protection.

Plaid Integration Security

Your financial connections are secured by industry leaders

🏦

Bank-Grade Infrastructure

Plaid connects to 12,000+ financial institutions using the same security standards as banks themselves.

🔐

No Credential Storage

Wyred never sees or stores your bank login credentials. All authentication is handled securely by Plaid.

Industry Compliance

Plaid is compliant with PCI DSS, SOC 2 Type II, and other major financial industry security standards.

Trusted by millions: Plaid powers connections for Venmo, Robinhood, Betterment, and thousands of other financial applications. The same technology that protects them protects you.

Compliance & Standards

Meeting the highest security requirements

SOC 2 Type II Aligned

Our security controls and processes align with SOC 2 Trust Service Criteria for security, availability, and confidentiality.

🔒

GDPR Ready

Data protection practices designed to comply with GDPR requirements for EU users' privacy rights.

📋

CCPA Compliant

California Consumer Privacy Act compliance ensures your data rights and privacy preferences are respected.

🛡️

Regular Audits

Ongoing security assessments, penetration testing, and vulnerability scanning ensure continuous protection.

Our Privacy Commitments

Your data, your control

🚫 Never Sold

We will never sell your financial data to third parties. Your information is not a product.

👁️ Transparent Usage

Clear disclosure of how we use your data, with no hidden purposes or unexpected sharing.

🗑️ Right to Delete

Request complete deletion of your account and data at any time. We'll remove everything.

📥 Data Portability

Export your transaction history and financial data whenever you want in standard formats.

🔍 Access Transparency

View complete audit logs of who accessed your data, when, and why through your account dashboard.

⚙️ Granular Controls

Fine-grained control over what data is collected, how it's used, and who can access it.

Your Role in Security

Help us keep your account secure

Best Practices:

  • Enable Multi-Factor Authentication (MFA) for an extra layer of protection
  • Use a strong, unique password that you don't use anywhere else
  • Review account activity regularly and report any suspicious behavior
  • Keep your devices secure with up-to-date operating systems and antivirus
  • Be cautious of phishing — we'll never ask for your password via email
  • Log out on shared devices and avoid public Wi-Fi for sensitive operations

Report Security Issues

If you discover a security vulnerability or have concerns about your account security, please contact us immediately at security@wyred.io

We take all security reports seriously and will respond promptly to investigate and address any issues.

Secure by Design

Experience peace of mind with enterprise-grade security built for your financial life.