TenancyIQ

Security & Trust

Security-conscious by design

TenancyIQ is built to help landlords handle operational data responsibly, with protected access, private document workflows, and clear limits around automation and AI.

Account and access protection

Authenticated areas are protected server-side, and access to landlord and tenant data is designed to be scoped to the correct account.

Private document handling

Documents are stored in private storage, validated before use, and served through protected application routes rather than public buckets.

Careful use of AI

AI features are intended to assist workflows, not replace human review. Generated or extracted content should always be reviewed before taking action.

What we focus on

  • Server-side checks on protected data access.
  • Private storage and controlled access to uploaded documents.
  • Encryption and environment-based secret management for sensitive integrations.
  • Security headers, rate limits, and webhook verification on sensitive flows.
  • Auditability for key account and operational actions.

Responsible disclosure

If you believe you have found a security issue, please contact us privately so we can investigate and respond promptly.

Vulnerability reporting
security@tenancyiq.co.nz

Please include a clear description, affected page or workflow, reproduction steps, and any supporting screenshots or logs.

Related information

Security and privacy are ongoing commitments. We continue to review controls as new features are introduced and improve our evidence, testing, and operational safeguards over time.