Security

Controls that match how growth teams ship

Pages, experiments, and translations live in one workspace. This page documents how that workspace is secured.

Last reviewed 2026-07-14 · security@liftlander.com

Compliance and assurance

What we can prove today

Certifications, testing, and audit trails tied to publishing landing pages - not generic SaaS claims. If a badge is still in progress, we say so.

SOC 2 Type II

Annual audit covering how we run the workspace that holds your pages, tests, and translations. Report available under NDA.

Request the report

GDPR-ready posture

Standard contractual clauses, an EU hosting option, and a published subprocessor list for market teams that need them.

ISO 27001 (in progress)

Information security management certification underway. We share status honestly rather than implying a badge we do not hold yet.

Publish and approval audit log

When a landing page goes live, a translation is approved, or a role changes, the event is recorded and retained for review.

Site-scoped administration

Limit an agency or country team to the brands and domains they own - not every property in the workspace.

Independent penetration tests

Third-party tests run annually and before major releases. Summaries available to enterprise buyers on request.

Access and identity

Rights sized to the site, not the company

CRO agencies, local marketers, and translators often share one LiftLander account. SSO and per-site roles keep that workable without oversharing.

SAML and OIDC SSO

Connect Okta, Entra ID, Google Workspace, or JumpCloud so marketers sign in the same way as the rest of your stack.

SCIM user lifecycle

Provision and deprovision editors and reviewers from your IdP when people join or leave a growth team.

Mandatory SSO

Require identity-provider login for the workspace and turn off password access for stricter environments.

Session policies

Set idle and absolute timeouts. Role changes force re-authentication before publish rights apply.

Roles by site

Owner, Admin, Editor, Reviewer, and Analyst - mapped to publish, translation approval, and billing visibility.

Permission history

Security and ops can reconstruct who gained publish or approval rights, and when.

Data handling

Where campaign data lives, and how it leaves

Encryption, residency, analytics defaults, and deletion windows you can paste into a vendor questionnaire.

Encryption in transit and at rest

TLS 1.3 with HSTS on product and customer page domains. AES-256 for databases, object storage, and backups.

Region locked at setup

Choose EU (Frankfurt) or US (Virginia) when the workspace is created. APAC available on request. Data does not roam for support.

Defined deletion windows

After workspace deletion, primary data is removed within 24 hours and encrypted backups within 35 days.

Real-visitor analytics defaults

Conversion metrics use filtered traffic. Aggregated by default; raw IPs are not kept beyond invalid-traffic filtering.

Managed keys

Cloud KMS with scheduled rotation. Key material is not exportable to LiftLander operators.

Documented subprocessors

Hosting, CDN, AI translation inference, billing, and email - listed below with 30-day notice before changes.

See the list

Subprocessors

Third parties in the path

Infrastructure and AI partners that may process workspace or page data. Workspace owners get 30 days' notice before this list changes. A signed DPA is available on request.

Amazon Web ServicesApplication hosting and storageEU, US
CloudflareCDN, WAF, and DNS for served pagesGlobal edge
OpenAICopy and image-text translation inferenceUS
StripeSubscription billingUS, EU
PostmarkTransactional product emailUS
SentryApplication error monitoringEU

Email security@liftlander.com for the DPA. Related: Privacy policy.

Talk through access and regions

Request the security package or book a walkthrough with the team that ships the product.