Security

Your operating data. Handled with precision.

Fairview connects to your most sensitive business data — CRM, revenue, costs, and ad spend. Here is exactly how we protect it.

Encryption at rest

AES-256 encryption for all stored data. Deal records, revenue figures, margin calculations — encrypted before they touch disk.

Encryption in transit

TLS 1.3 on all connections. Every API call, every data sync, every user session.

OAuth 2.0 only

Fairview never stores your CRM, Stripe, or QuickBooks credentials. We use OAuth tokens with the minimum permissions required. Revoke access from your source tool at any time.

Read-only integrations

Fairview reads your data. It never writes to your CRM, modifies financial records, or takes any action in your connected tools.

SOC 2 Type II (in progress)

We are actively pursuing SOC 2 Type II certification. Expected completion: Q3 2026. Current security posture reviewed by external auditors.

GDPR-ready

Data Processing Agreement (DPA) available on request. Data residency in EU available on Scale plan.

Data access model

Exactly what Fairview reads. And what it never touches.

Fairview operates on a read-only, minimum-access model. We pull only the data fields needed to calculate your operating metrics — nothing more. No write access is requested or used on any connected tool.

OAuth tokens are scoped to the minimum permissions required. If you disconnect a source from Settings, Fairview stops reading immediately. Your credentials are never stored on our servers.

Fairview · Data Access Model

Reads

  • Deal data (stage, value, close date)
  • Revenue figures from Stripe
  • Cost and expense data from QuickBooks / Xero
  • Ad spend from Google Ads and Meta Ads

Never stores

  • Raw credentials or passwords
  • Personal contact details beyond deal context
  • Card or payment details
  • Data from sources you have not connected
Security FAQ

FAQ

Direct answers. No hedging.

Where is my data stored?

AWS infrastructure in the US (us-east-1). EU residency available on Scale plan.

Can I revoke Fairview access?

Yes. Disconnect any integration from Settings → Integrations. Fairview stops reading data immediately. You can also revoke from the source tool directly.

Does Fairview have employees who can view my data?

A small number of authorized engineers can access encrypted data for support and debugging, under strict access controls. We never look at your data unless you ask us to.

What is your data retention policy?

Active account data retained for the duration of your subscription plus 30 days after cancellation. You can request deletion at any time via support@getfairview.com

Do you sell or share my data?

Never. Your business data is never sold, shared with third parties, or used to train AI models.

Is Fairview GDPR compliant?

Yes. DPA available on request. Contact privacy@getfairview.com.

Questions about security?

Email us directly at security@getfairview.com . We respond to security inquiries within one business day.