Security

Built for teams that get audited

GodHelpSDR is maintained to be safe to deploy in enterprise revenue orgs. This page describes the controls that are live today.

Zero-touch reads

We never integrate with your prospects' systems. Every reading is derived from public infrastructure only.

Encryption in transit and at rest

TLS 1.3 for all traffic. Data at rest encrypted with per-tenant keys.

SSO and SCIM

SAML SSO and SCIM provisioning available on business plans. Role-based access controls throughout.

Regional storage

US and EU data residency options. Data does not leave your chosen region.

Audit logs

Every read, export, and configuration change is logged and exportable to your SIEM.

Vendor management

Sub-processors reviewed annually. Full list available on request.

Data sourcing

All scoring inputs come from public infrastructure: DNS records, TLS certificate transparency logs, page source, public hiring pages, and public LinkedIn profiles. We do not buy leaked datasets and we do not scrape behind logins.

Compliance posture

GodHelpSDR is designed to align with SOC 2, GDPR, and CCPA requirements. This page is maintained by the GodHelpSDR team and is not a certification statement. If you need our current attestations, DPA, or sub-processor list, reach out at /contact.

Report a vulnerability

Email security@godhelpsdr.com. We acknowledge within one business day and coordinate a disclosure timeline that respects your users.