Security & Trust
We understand that you're trusting us with your team's work. That's why we've built Whatstask with enterprise-grade security from the ground up.
Security isn't an afterthought—it's built into every layer of Whatstask.
All data is encrypted in transit using TLS 1.3 and at rest using AES-256 encryption. Your tasks and team communications are protected at every stage.
Our infrastructure runs on enterprise-grade cloud providers with SOC 2 Type II certified data centers. We use isolated environments and regular security audits.
Role-based access control (RBAC) ensures team members only see what they need. Admins have full control over permissions and user management.
We collect only the minimum data necessary to provide our service. Your data is never sold or shared with third parties for advertising.
Your data is stored in secure data centers. Enterprise customers can request specific data residency locations to meet regulatory requirements.
We have a dedicated security team monitoring 24/7. Any security incidents are promptly investigated and communicated transparently.
Telegram Integration Security
Whatstask leverages Telegram's robust security infrastructure, including their MTProto encryption protocol. We only access the minimum permissions needed to provide our service.
✓ Send messages
To deliver task notifications
✓ Receive messages
To process your commands
✗ Read private chats
Never requested
✗ Access contacts
Never requested
We're committed to respecting your privacy rights and meeting regulatory requirements.
Full compliance with EU General Data Protection Regulation
DPA available for enterprise customers upon request
Export your data anytime in standard formats
Request complete deletion of your data at any time
We follow industry best practices to keep your data safe.
Your Telegram user ID and display name to identify your account. We don't have access to your phone number or email unless you provide it.
The tasks, projects, and notes you create within Whatstask. This data is encrypted and only accessible to you and your team members.
Anonymous usage data to improve our service (feature usage, performance metrics). This data cannot be used to identify individual users.
We never access your private Telegram messages, contacts, or any data outside of your direct interactions with the Whatstask bot.
Need additional security features? Enterprise plans include advanced security controls and compliance options.
SAML 2.0 single sign-on support
Detailed activity tracking
Tailored data agreements
Our team is here to answer any questions about our security practices. For security researchers, we welcome responsible disclosure of any vulnerabilities.