Security
Security is built into how we deliver and host Odoo systems. This page summarises the safeguards we maintain across our practice and infrastructure.
Infrastructure
We deploy on hardened, reputable cloud infrastructure with isolated environments per client.
- Encryption in transit (TLS) and at rest for stored data.
- Network isolation, firewalls, and least-privilege access controls.
- Automated daily backups with tested restore procedures.
Access control
Access to client systems is role-based and granted on a need-to-know basis. Consultant access is logged, reviewed, and revoked promptly when an engagement ends.
Data protection
Client data is segregated, never shared between engagements, and handled in line with our Privacy Policy. We support data residency requirements where a project calls for them.
Secure development
Customisations follow secure coding practices, peer review, and staged deployment through development, testing, and production environments before go-live.
Monitoring & response
Production systems are monitored for availability and anomalies. We maintain an incident response process and notify affected clients promptly in the event of a security incident.
Report a vulnerability
If you believe you have found a security issue, please email security@truodo.com. We review every report and aim to acknowledge within two business days.