Effective Date: July 01, 2026
Your trust matters to us, especially given the nature of what U4RIA helps you with. This page explains how we protect your information and the practices we follow to keep the Services secure.
1. Infrastructure
U4RIA is built on Amazon Web Services (AWS), which maintains its own SOC 2 and ISO 27001 certifications at the infrastructure level. This means the physical data centers, networking, and core compute environment our app runs on are independently audited to industry-leading security standards.
2. Data Encryption
Data is encrypted in transit using industry-standard TLS encryption between your device and our servers.
Data is encrypted at rest within our AWS infrastructure.
3. Access Controls
Access to production systems and user data is limited to authorized team members who need it to do their work.
We follow the principle of least privilege—team members and contractors are granted only the access necessary for their role.
Account access is protected through authentication controls, and we recommend using a strong, unique password for your U4RIA account.
4. Payments
U4RIA does not store your payment card details. Subscription payments are processed through Apple Pay and Google Pay, both of which maintain their own industry-standard security and compliance programs.
5. Data Retention and Deletion
Mood-related and AI-generated content is retained for 60 days and then deleted, as described in our Privacy Policy.
When you delete your account, your personal information is deleted promptly, with narrow exceptions for records we're required to retain for billing or legal purposes, for up to 30 days.
6. Our Compliance Roadmap
We know that security certifications matter, especially to our enterprise and business partners. Here's where we stand:
In Progress: We are actively working toward formal security compliance certification (SOC 2 and/or ISO 27001) and are currently completing a readiness assessment.
Enterprise and business partners with compliance requirements are welcome to contact us directly to discuss our current security posture and roadmap, or to complete a vendor security questionnaire.
We'll update this page as our certification status progresses.
7. Responsible Disclosure
If you're a security researcher and believe you've found a vulnerability in our Services, we want to hear from you. Please report it to us before disclosing it publicly, so we can investigate and address it responsibly.
Please include:
We'll acknowledge your report and keep you updated as we investigate. We ask that you avoid accessing, modifying, or deleting any data that isn't your own while researching a potential issue.
A description of the vulnerability
Steps to reproduce it
Any relevant screenshots, logs, or proof-of-concept details
Email: support@u4riahub.com
8. Questions
If you have questions about our security practices, or if you're a partner who needs additional documentation for a vendor review, contact us.
Email: support@u4riahub.com

