LIFTORI
Trust & Security

Security isn't a feature.
It's why buyers say yes.

Before anyone trusts a platform with their business, they want to know their data is safe. Here is how Liftori protects it — in plain language, and only what we actually do.

Isolated by tenant

Every customer runs in its own dedicated database — not shared tables. Your data never sits next to anyone else's.

Authenticated access

Internal records are locked to signed-in staff and enforced at the database layer, not just in the app.

Encrypted end to end

Traffic is encrypted in transit (TLS) and your data is encrypted at rest (AES-256).

No card data stored

Payments run through Stripe. We never see or store card numbers.

How your data is protected

Locked down by design.

Access control is built into the foundation, not bolted on. Data access is decided at the database, so a bug in the app can't hand out records it shouldn't.

01

Data isolation

  • A separate, dedicated database per customer
  • Separate credentials and file storage
  • No shared multi-tenant tables
  • Cross-customer access is structurally impossible
02

Access control

  • Row-Level Security enforced in the database
  • Internal data gated to authenticated staff
  • Role-based permissions (owner, admin, member)
  • Public keys reach only public intake, never records
03

Encryption & secrets

  • TLS 1.2+ on every connection
  • AES-256 encryption at rest
  • Secrets stored server-side, never in the browser
  • HTTP redirects to HTTPS by default
How we work

We audit before
we ship.

Security is a practice, not a one-time checkbox. Code is reviewed and tested before release, the database is checked against security advisories, and infrastructure rebuilds from source under version control.

Reviewed & tested

Changes go through code review and QA before they reach production.

Database hardening

Access policies are audited so only authenticated users reach internal data.

Managed backups

Automated backups on managed infrastructure, recoverable from source.

Error monitoring

Runtime errors are captured and triaged so issues surface fast.

Responsible disclosure

Found something? Tell us.

If you believe you've found a security vulnerability, please email security@liftori.ai. We acknowledge every report and work in good faith to fix issues quickly. Please give us a reasonable window to remediate before any public disclosure.

Build on a
foundation you trust.

Whether it's a full business OS like Roofgrid, a custom product, or consulting — your data is protected from day one.