Last updated: June 19, 2026
An overview of how NEPOPSX protects your accounts and data. We're happy to walk security teams through any of this in more detail.
Every request is scoped to your organization and authorized at the service layer. Data is partitioned by organization, and access checks are enforced on read and write paths.
Data is encrypted in transit (TLS). Backups and data at rest are protected by our managed infrastructure provider's encryption.
Sensitive actions — plan changes, membership changes, and learning approvals/reverts — are recorded in an immutable audit log visible to org admins.
We are an early-stage product. We do not yet hold SOC 2 or ISO 27001 certification; formal compliance is on our roadmap. We're glad to complete security questionnaires and discuss your requirements.
Found a security issue? Please email admin@nepselabs.com with details. We'll acknowledge and work with you on a fix.
Questions? Contact admin@nepselabs.com.