Your data. Your rules.
Bank-level encryption. Zero data sharing. Full deletion on request.
Encryption
Encrypted at every layer
AES-256 encryption at rest
All documents and sensitive data are encrypted using AES-256 — the same standard used by banks and government agencies. Your files are unreadable without the proper decryption keys.
TLS 1.3 in transit
Every connection to Frame uses TLS 1.3. Your data is encrypted from the moment it leaves your device until it reaches our servers.
Short-lived access links
When you upload or download files, we generate temporary signed URLs that expire within minutes. No permanent links to your documents — each access requires fresh authentication.
Storage
Built on proven infrastructure
AWS infrastructure
Your documents are stored on Amazon Web Services S3 with 99.999999999% durability. AWS maintains SOC 2 Type II, ISO 27001, and numerous other security certifications.
No long-lived credentials
Files are uploaded directly to secure storage using temporary credentials that expire quickly. Your documents never pass through intermediate servers.
Access
Strict access control
Only your planning team
Your data is accessible only to you and your dedicated advisors. We don't share your information with third parties. We never sell your data.
Read-only account connections
When you connect financial accounts through Plaid, we only request read-only access. We can see your transactions and balances, but we can never move money or make changes to your accounts.
Multi-tenant isolation
Your data is logically separated from other clients at every layer of our system. Strict access controls ensure only authorized users can view your information.
Rights
You own your data
Delete your data anytime
Request complete deletion of all your data at any time, no questions asked. We permanently remove your documents, account connections, and personal information.
Full transparency
See what data we have about you. Export your information, review your uploaded documents, and see exactly what accounts are connected.
We use industry-leading partners who maintain SOC 2 Type II compliance, including Plaid for account connections and eMoney for financial planning. For questions about our security practices, contact us at security@getframe.com