Security at Lottly
Every workspace is isolated at the database layer with row-level security enforced by Postgres itself. Sign-in is passwordless via magic links. Credentials for Xero, QuickBooks, Shopify and Square are encrypted at the application layer with AES-256 and never reach your browser. All traffic is TLS; Supabase, Netlify and Stripe are SOC 2 audited. Billing runs entirely on Stripe — we never see your card number. Report a vulnerability to security@lottly.pro; we acknowledge every report within two business days.
Home · About us · Contact us
Start your 14-day free trial