Security
Last updated: April 12, 2026
At Prix, security is our top priority. We implement industry-leading security practices to protect your code and data.
Data Encryption
All data is encrypted both in transit and at rest:
- TLS/SSL encryption for all data transmitted between your browser and our servers
- AES-256 encryption for data stored on our servers
- Encrypted database backups with separate encryption keys
Authentication
We use industry-standard authentication providers:
- GitHub OAuth for user authentication - we never store passwords
- Secure session management with httpOnly cookies
- CSRF protection on all state-changing operations
- Rate limiting to prevent brute force attacks
Privacy
Your code privacy is fundamental to our service:
- No permanent storage - Code is processed in real-time and deleted immediately after review
- Zero data retention - We do not store your source code on our servers
- Minimal data collection - We only collect what's necessary for the service
- GDPR compliant - Full compliance with data protection regulations
Payment Security
Payment processing is handled securely by Stripe:
- PCI DSS Level 1 compliant - The highest level of payment security certification
- No card data stored - All payment information is handled by Stripe
- Encrypted transactions - End-to-end encryption for all payments
- 3D Secure support - Additional authentication for fraud prevention
Infrastructure
Our infrastructure is built on secure, enterprise-grade cloud providers:
- Cloud-hosted on secure data centers with 24/7 monitoring
- DDoS protection and automatic threat detection
- Regular security audits and penetration testing
- Automated vulnerability scanning and patching
- 99.9% uptime SLA with redundant infrastructure
Data Handling
How we handle your user data:
- User data - Stored securely with encrypted backups
- Code submissions - Processed in memory and never persisted
- Payment records - Retained for 7 years per financial regulations
- Analytics data - Aggregated and anonymized after 26 months
- Account deletion - Full data deletion available upon request
Reporting Security Issues
If you discover a security vulnerability, please contact us immediately at security@prix.ai. We respond to all security reports within 24 hours and appreciate responsible disclosure.
Contact
For any security-related questions, please contact us at security@prix.ai