Skip to content

Security & Trust Center

Enterprise-grade security practices to keep your data and your subscribers safe.

Last updated: July 1, 2026

Encryption

All traffic to and from Mailivate is encrypted in transit using TLS 1.2 or higher. Data at rest is encrypted using industry-standard AES-256 encryption on our infrastructure providers. Passwords are hashed and never stored in plain text.

Data handling

We collect and process only the data needed to provide our email marketing service. You retain ownership of your subscriber lists and campaign content. We do not sell personal data. Access to production systems is restricted to authorized personnel on a need-to-know basis with multi-factor authentication.

  • Role-based access controls within the application
  • Regular backups with encrypted storage
  • Data processing agreements available for business customers
  • GDPR-aligned data subject rights — see our Privacy Policy

Uptime & reliability

Mailivate is built on resilient cloud infrastructure with monitoring and alerting across core services. We target high availability for the application and queue processing that powers campaign delivery. For real-time service status, visit our status page.

Subprocessors

We use trusted third-party providers to operate Mailivate. Each processes data only under our instructions and appropriate contractual safeguards:

  • Stripe — payment processing and subscription billing
  • Amazon SES, Mailgun, Postmark, and SendGrid — email delivery when configured for your account
  • Microsoft Clarity — product analytics, loaded only with your cookie consent
  • Hosting and infrastructure providers — application hosting, storage, and backups

Contact

For security questions or to report a vulnerability, contact us at security@mailivate.com.