Encrypted communication
All traffic between your browser and LinkVerse.Work uses TLS 1.3 with forward secrecy. Insecure versions are disabled at the server.
TLS 1.3We built LinkVerse.Work on the idea that trust isn't asked for — it's demonstrated. Here is exactly what we do to protect your data, and what we don't yet.
We don't ask you to trust us. We show you how trust is built — layer by layer, decision by decision.
Each one is implemented and active right now, today, in production.
All traffic between your browser and LinkVerse.Work uses TLS 1.3 with forward secrecy. Insecure versions are disabled at the server.
TLS 1.3Your passwords are never stored as plaintext. We use bcrypt — industry-standard, OWASP-recommended — with a random per-user salt.
argon2idTOTP support via Google Authenticator, Authy or 1Password. Compatible with any app that follows the RFC 6238 standard.
RFC 6238Native integration with Google, Microsoft, GitHub, Discord, Facebook and LinkedIn. We never receive your password — only the authorised token.
OAuth 2.0CSRF tokens on every form, automatic XSS escaping, parameterised queries against SQLi, proper security headers.
CSRF · XSS · SQLiPostgreSQL 16 database with encryption at rest, daily encrypted backups and role separation to scope access.
PostgreSQL · BackupsEvery connection between components is encrypted and authenticated. Your request flows through these layers:
No Google Analytics, no Facebook Pixel, none of that. We don't sell your data. You pay with money, never with attention.
Right to access, rectify, port and erase — always, two clicks. GDPR-compliant from day one.
When you delete your account, it really is gone. No eternal "soft delete". Data is removed from backups within 30 days.
Servers in European datacentres. Your data doesn't cross the Atlantic and isn't subject to the US CLOUD Act.
We aim for production-grade quality, not to look more than we are. Here is what we cannot yet promise:
When these change, we update this page. Not before.
We are grateful to those who help us improve. We treat every report seriously and reply within 48 hours.
Email [email protected] with a technical description, repro steps and estimated impact. Don't publish before the fix.
You get an acknowledgement with an estimated fix window. For severe issues we act in hours.
Once fixed, you can publish your finding. We give public credit if you wish — always with your consent.
Create your account. Inspect the privacy controls. Decide for yourself.