Security
Trusttocard uses TLS sessions, non-custodial architecture, suspicious-activity monitoring, and additional confirmations for higher-risk payments.
- 256-bit TLS encryption for data in transit;
- we never store seed phrases or private keys;
- transactions are monitored for fraud signals;
- card limits and status can be controlled quickly.
Compliance & Certifications
The service is designed around payment-security standards and partner compliance requirements.
- SOC 2 Type II - independent security-control audit;
- PCI DSS Level 1 - card-data protection practices;
- GDPR - personal-data protection approach;
- CertiK - smart-contract logic review.
Security Best Practices
Follow these recommendations to reduce the risk of unauthorized access.
- never share your seed phrase or private keys;
- enable biometrics and payment confirmations;
- review your transaction history regularly;
- use a strong, unique password;
- be cautious with links in emails and messages.
Report a Security Issue
If you notice suspicious activity or want to report a vulnerability, contact the security team.
Security team: security@trusttocard.com