Skip to content
Security

Your project data is protected

UpScale.build handles sensitive financial data for property developments. We take security seriously — here's exactly how we protect your information.

Secure connections and managed encryption

UpScale is served over HTTPS and uses encrypted connections to its managed services. Supabase, Vercel, and connected storage providers manage encryption within their respective platforms.

Complete data isolation

Every organisation's data is fully isolated through PostgreSQL Row-Level Security (RLS) policies. One organisation cannot access another's data — this is enforced at the database level, not the application level.

Role-based access control

Admins control who can access what. Team members see only the projects they're assigned to. The Client Portal provides read-only access for external stakeholders without requiring an account.

Secure authentication

Authentication and session handling are provided through Supabase Auth. Password recovery uses an emailed recovery link, while server-side route protection verifies the active session before loading workspace data.

Transparent service providers

The web application runs on Vercel and core database and authentication services run on Supabase. Connected documents remain with your chosen Dropbox, Google Drive, or OneDrive account. Contact us to confirm current regions for a compliance review.

Purpose-limited data handling

We do not sell personal information. Service providers process data where needed to operate UpScale, and optional integrations or AI features send only the information needed for that requested workflow. See the Privacy Policy for details.

Security headers and HTTPS

The application configures HTTPS enforcement through an HSTS directive together with Content-Type-Options, Frame-Options, Referrer-Policy, and Permissions-Policy response headers.

Resilience and recovery

UpScale relies on managed platform resilience and documents restoration and rollback procedures for application and database changes. Contact us for the current backup retention and recovery configuration applicable to your service requirements.

Questions about security?

Contact us at hello@upscale.build — we're happy to discuss our security practices in detail.