Gradcut services and data are hosted in AWS and Linode facilities. Access to customer data is limited to authorised employees who require it for their job. Gradcut is served 100% over https. We have SAML Single Sign-on (SSO), 2-factor authentication (2FA), and strong password policies on GitHub, AWS, and Linode to ensure access to cloud services is protected.
All personal and identifying data sent to or from Gradcut is encrypted in transit using 256-bit encryption. We encrypt data at rest using an industry-standard AES-256 encryption algorithm.
Gradcut employs third-party security tools to perform continuous vulnerability scans. Our dedicated security team promptly addresses any issues identified. Additionally, we engage external security experts annually to conduct thorough penetration tests on the Gradcut application and infrastructure.
Gradcut implements escalation procedures, rapid mitigation, and post-mortem procedures for handling security events. All employees are informed of our policies.
OTP (One-Time Password) authentication enhances security by requiring users to enter a unique password sent to them at the time of login, in addition to their regular login credentials. This ensures that only authorised users can access the system, providing an extra layer of protection against unauthorised access.
All payments made to Gradcut go through our partner, Stripe. Details about their security setup and PCI compliance can be found on Stripe’s security page.
We conduct background checks on all new hires in compliance with local regulations, including employment verification and criminal checks.
Every year, all employees participate in mandatory Security and Awareness training.
We maintain an extensive set of security policies that cover various aspects of our operations. These policies are regularly reviewed and updated, and all employees are kept informed.
All employee agreements contain a confidentiality clause to ensure the protection of sensitive information.
Delivering instant personalised graduation videos while supporting education in developing communities.
Gradcut is a registered trading name of Edit on the Spot Pty Ltd.