Security & Trust

A practical overview of how Marktspan protects seller workspaces and marketplace data.

Infrastructure

Marktspan runs on managed cloud infrastructure including Vercel, Supabase, and Cloudflare. We use HTTPS for public traffic and managed database/authentication services with access controls, backups, and operational monitoring.

Authentication and access control

Users sign in through Supabase authentication. Workspaces are tenant-scoped, team members receive roles and tab-level access, and administrative areas are separated from normal user workflows.

Marketplace API access

Marketplace and advertising connections are used only to provide configured product features such as synchronization, reporting, recommendations, and operational automation. You can disconnect marketplace accounts from the app.

Auditability

Operational features are designed around traceability: sync jobs, recommendations, automation settings, and user actions are recorded where relevant so teams can review what changed and why.

Data protection

Our Privacy Policy explains the categories of personal data we process, legal bases, retention, and third-party service providers. Business customers can contact us for data-processing documentation where required.

Responsible disclosure

Please report suspected vulnerabilities or security concerns to security@marktspan.com. Include enough detail to reproduce the issue and avoid accessing, modifying, or deleting data that is not yours.

Compliance note

Marktspan is an early-stage SaaS product. Formal certifications such as ISO 27001 or SOC 2 are not claimed unless explicitly stated in a signed agreement or current public security statement.