We recognize that privacy is important. This document outlines the types of personal information we receive and collect when you use our services, as well as some of the steps we take to safeguard information. We hope this will help you make an informed decision about sharing personal information with us. The security and privacy of your account and collected form information is our number one priority, even more than network uptime.
Do You Resell or Use The Collected Data?
No. The collected data is yours and yours alone. The data will never be sold or used by anyone other than the account holder. Our business is to keep the forms running and adding cool new technologies .. we'll leave the collected data for you.
What Steps Are You Taking To Protect Our Data?
It starts with physical security and top of the line servers in a trusted datacenter, and we are proud to select Rackspace for our server needs. We use trusted SSL certificates from GeoTrust, encrypted data storage using government-grade encryption standards, secure RSS feeds and data viewers over the HTTPS protocol for secure data retrieval, as well as all of the best-practices you can imagine that we carried with us from our background in designing security software for large enterprises. As an added measure - we'll also soon be introducing an optional 2-way encryption for your data with a private password that only you will know.
What Can I Do If I'm Concerned About The Security Of My Form Data?
If you're concerned about the security of your collected data there are a number of steps you can take in order to help ensure that the data is protected.
What Are You Doing To Prevent Spam Attacks?
1. Disable any additional features that you don't need (RSS data feeds, API access, etc ..)
2. Disable the sending of email notifications with the form data, email is not a secure communication method. Instead use the option to view the data with the secure data viewer, or view the data from the Reports page in the Members Area.
3. Additionally - you can choose to disable the saving of the data to the database and instead use the Connectors feature to store the data in your own database.
As with any system, there is a constant battle between flexibility and security .. and formexperts is no different. We are well versed in many types of exposures and attacks and have incorporated many best practices into the architecture of the site. In knowing that we can't stop the attacks - there are a few things that we can do in order to help minimalize their effectiveness.
Do you store the IP address of the person submitting the form should I want to report it?
1. We offer an email validation function that can be applied to any field, this is under the "Advanced" view -> data input validation options. This tests for properly formatted email addresses.
2. The use of a CATCHA security code image is very effective in preventing robot spam and automated junk submissions.
3. We also verify each email address that is sent to ensure that it is a valid domain name and that there are MX records in DNS.
The option to log the IP address of the submission is on the "Options" tab when customizing the form. We please ask that you allow us the first look at anything you would like to report, as we have had people incorrectly report that we were sending the junk mail because the mail originates from our servers (and it's a *lot* of work to straighten that stuff out)
Is it at all possible for a technically savvy person to obtain the email address to which the completed form is sent, or intercept it upon submit?
We can't ever say that its impossible, because everyday new hackers are getting more creative and sinister .. but we're comfortable to say that we feel confident your email address and data are safe. The area where your email address information is stored is not related to the incoming data, and the emails are sent from different servers than the ones that process the forms.
As we mentioned above, there is a constant battle between security and flexibility, and our system is as secure as you want it to be .. we offer many features that can help you protect your data, and many features that can allow you to exploit it. In short - its all in how you use it. With our experience, and your concern for protecting your data - we should be able handle any problem and keep your forms running smoothly and securely. For more information about our security and privacy practices, or if you have additional questions, please contact us any time.
(The Legal Stuff)
Formexperts.com collects personal information when you register for a service or otherwise voluntarily provide such information.
We may use personal information to provide the services you've requested, including services that display customized content.
We may also use personal information for auditing, research and analysis to operate and improve formexperts.com technologies and services.
We will not share information collected with third parties outside of formexperts.com for the purposes of sales or marketing activities.
We may share information with third parties in limited circumstances, including when complying with legal process, preventing fraud or imminent harm, and ensuring the security of our network and services.
formexperts.com processes personal information on our servers in the United States of America and in other countries.