IP
ILLUMpulse

by ILLUM Partners

← Back to homeGet My Valuation

Data Security · ILLUM Pulse

Your financial data security is our priority.

Built for the extreme sensitivity of M&A transactions. Your business data is private, encrypted, and yours alone — always. We treat your information with the same confidentiality as a formal advisory engagement.

Talk to us about securityView our Privacy Policy
100%
Private — never sold or shared
Zero
Third-party data sharing
AES-256
Encryption at rest
GDPR
& CCPA compliant

Security Architecture

Five layers of protection for your most sensitive data

Every layer of ILLUM Pulse is designed around the assumption that your business financials are your most sensitive asset.

01

Encryption in transit

Your data is encrypted every step of the way

All data transmitted between your browser and ILLUM Pulse is encrypted using TLS 1.3 — the same standard used by major banks and financial institutions. No data travels unencrypted at any point. Your valuation figures, revenue data, and margin information are protected from the moment you type them.

TLS 1.3 · Vercel Edge Network
02

Encryption at rest

Your stored data is encrypted and non-accessible

All data stored in the ILLUM Pulse database is encrypted at rest using AES-256 — military-grade encryption. Your financial data is stored on AWS infrastructure via Supabase, one of the most secure database platforms available. Even in the unlikely event of a server breach, your data remains unreadable.

AES-256 · AWS Infrastructure
03

Row-level security

Your data is yours alone — no other user can see it

ILLUM Pulse enforces row-level security on every database table. This means it is technically impossible for one founder's data to be accessed by another user — even by accident. Your revenue figures, valuation range, and M&A readiness score are visible only to you and only when you are authenticated. This is not a policy — it is enforced at the database level.

Supabase RLS · Per-user isolation
04

Data privacy

No one at ILLUM reads your data without your permission

Your financial data is used solely to generate your Pulse Score, valuation range, and M&A readiness report. We do not sell your data. We do not share your identifiable data with any third party. Anonymised and aggregated benchmark data — with no identifying information — may be used to improve sector benchmarks. You may request deletion of all your data at any time by emailing info@illumpartners.com.

Zero data sales · Deletion on request within 30 days
05

Regulatory compliance

GDPR and CCPA compliant by design

ILLUM Pulse is built to comply with GDPR and CCPA. You have the right to access, correct, and delete your personal data at any time. We process data only on lawful bases — contract performance and legitimate interest. Our infrastructure is based in the United States under Virginia law jurisdiction.

GDPR · CCPA · Virginia USA jurisdiction

Transparency

What we have — and what we are building toward

We believe in complete transparency about our security posture.

✓ What we have today

TLS 1.3 encryption in transit
AES-256 encryption at rest
Row-level security per user
Zero data sharing or selling
GDPR and CCPA compliant
Data deletion on request within 30 days
AWS infrastructure via Supabase
Secure authentication via Supabase Auth

⟳ What we are building toward

SOC 2 Type II certification
ISO 27001 certification
Penetration testing report
Formal security audit
Bug bounty programme
Annual third-party security review

Infrastructure

Built on enterprise-grade infrastructure

Vercel Edge Network
Global CDN with automatic TLS. Used by thousands of enterprise applications worldwide.
Supabase on AWS
PostgreSQL database with row-level security, encrypted at rest on AWS infrastructure.
Stripe Payments
PCI-DSS Level 1 compliant payment processing. ILLUM Pulse never stores card details.

Questions about security?

We are happy to discuss our security practices in detail.

Contact us — info@illumpartners.com