Security | Rinkta

[Rinkta](https://rinkta.com/)

Products

Agencies

Resources

[Customers](https://rinkta.com/case-studies) [Pricing](https://rinkta.com/pricing)

[Log in](https://app.rinkta.com/session/new) [Sign up for free](https://app.rinkta.com/registration/new)

Security

# Built for trust, not just compliance.

Rinkta processes invoicing data for 100+ agencies. Here's how we keep it safe — what's encrypted, where it lives, who can access it, and how to ask us anything we haven't covered.

Data handling

## How your data is protected

### Encryption in transit

All traffic between your browser, our servers, and connected services is TLS 1.2+ with modern cipher suites. No plaintext anywhere on the wire.

### Encryption at rest

Customer data is stored in AES-256-encrypted databases. Backups inherit the same encryption. Encryption keys are rotated automatically.

### EU-based hosting

Primary infrastructure runs in EU data centers (Frankfurt, Amsterdam). Data stays within EU/EEA borders unless you explicitly opt in to other regions.

### Role-based access

Within Rinkta, every user has a role with explicit permissions. On our side, only on-call engineers have production access, and every action is audit-logged.

### GDPR compliant

We comply with GDPR and similar EU data-protection laws. We can sign a Data Processing Addendum (DPA) on request — email us and we'll get it back within a business day.

### Backup and recovery

Continuous database backups with point-in-time recovery up to 30 days. Backups are encrypted, geo-redundant within the EU, and tested quarterly.

FAQ

## Questions we hear most

<details>

<summary>

Are you SOC 2 compliant?

◀</summary>



We follow SOC 2 controls (access management, change management, monitoring, incident response) but are not yet certified. Certification is on our roadmap; in the meantime we're transparent about our practices and happy to walk through them on a call.

</details>

---

<details>

<summary>

Where exactly does my data live?

◀</summary>



Primary databases run in EU data centers (Frankfurt and Amsterdam). Backups are geo-redundant within the EU. We don't replicate customer data outside EU/EEA without explicit consent.

</details>

---

<details>

<summary>

Who are your sub-processors?

◀</summary>



AWS (hosting), Cloudflare (DNS, edge), Polar (payments), PostHog (product analytics, opt-in only), and our integration providers (Asana, GitHub, Linear, etc.) when you connect them. Full list and DPA terms available on request — email info@primevise.com.

</details>

---

<details>

<summary>

How do I request a Data Processing Addendum (DPA)?

◀</summary>



Email info@primevise.com with your company name and DPO contact. We'll send a signed copy within one business day. The DPA covers GDPR processor obligations, sub-processor list, audit rights, and breach notification timelines.

</details>

---

<details>

<summary>

How long do you keep my data after I cancel?

◀</summary>



Active accounts retain data indefinitely. Cancelled accounts have data retained for 90 days (in case you come back), then permanently deleted. You can request immediate deletion at any time via info@primevise.com.

</details>

---

<details>

<summary>

What if there's a security incident?

◀</summary>



We notify affected customers within 72 hours of confirming an incident, with details of what happened, what data was affected, and what we're doing about it. This matches GDPR breach-notification timelines.

</details>

---

<details>

<summary>

Can I delete my account / export my data?

◀</summary>



Yes, both. Account settings have a one-click data export (CSV + JSON) and a delete-everything option. The delete is permanent and immediate; you'll get a confirmation email and 30-day reactivation window before final purge.

</details>

### We answer fast.

[Email security](https://rinkta.com/mailto:info@primevise.com)

Email info@primevise.com — usually within a business day.

[Rinkta](https://rinkta.com/)

### Product

- [Time tracking](https://rinkta.com/products/time-tracking)
- [Insights](https://rinkta.com/products/insights)
- [Invoices](https://rinkta.com/products/invoices)
- [Integrations](https://rinkta.com/integrations)
- [Pricing](https://rinkta.com/pricing)

### Solutions

- [Software agencies](https://rinkta.com/agencies/software)
- [Creative agencies](https://rinkta.com/agencies/creative)

### Resources

- [Guides](https://rinkta.com/guides)
- [Customer stories](https://rinkta.com/case-studies)
- [Profitability calculator](https://rinkta.com/resources/calculators/profitability-calculator)
- [Utilization calculator](https://rinkta.com/resources/calculators/utilization-calculator)

### Company

- [About](https://rinkta.com/about)
- [Contact](https://rinkta.com/contact)
- [Security](https://rinkta.com/security)

### Follow us

- [Discord](https://rinkta.com/join/discord)
- [X / Twitter](https://x.com/rinktacom)
- [LinkedIn](https://www.linkedin.com/company/rinkta)
- [Instagram](https://www.instagram.com/rinktacom/)
- [Facebook](https://www.facebook.com/rinktacom)

---

Rinkta is developed, shaped and backed by [Primevise](https://primevise.com/?ref=rinkta)

- [Privacy Policy](https://rinkta.com/privacy-policy)
- [Terms of Service](https://rinkta.com/terms-of-service)

## We use cookies

To understand how Rinkta is used and improve the experience. Read our [privacy policy](https://rinkta.com/privacy-policy).

Accept

Reject