Data Security Policy

Baseline Data Systems, Inc.
Torrance, CA, USA

Data Security Overview

The information you create and enter into the Product belongs to you. Baseline Data Systems does not assume ownership of customer data and is not responsible for the content stored within customer accounts. We do not sell customer lists or share customer information with unauthorized third parties. Customer data is stored on servers located within physically secure facilities and is transmitted using SSL encryption. Our systems are monitored 24 hours a day, 7 days a week, to help maintain system availability, performance, and data security. Access to systems, resources, and customer information is restricted to authorized personnel based on their job responsibilities.

Physical Security

Our servers are hosted in third-party data centers located in the United States and are protected by multiple layers of physical security. Facility perimeters are reinforced with crash-rated barriers designed to prevent unauthorized vehicle access. Access to secured internal areas, including cooling systems, electrical switchboards, and power generators, requires both badge authentication and a personal PIN. Only authorized personnel are permitted entry. All access points are monitored by 24/7 video surveillance with both local and remote monitoring capabilities.

The innermost secured areas house servers and networking equipment and are protected by vault-rated security doors and metal detection systems. Entry into these areas requires an additional badge swipe and PIN authentication. These facilities are regularly audited for compliance with applicable local, state, and federal requirements and are continuously monitored.

Host Security

Baseline Data Systems actively monitors industry security updates, including operating system, hardware vendor, and software security advisories. Critical security patches are tested and deployed as quickly as reasonably possible. Hosts and services are continuously monitored for system integrity and availability. Operations personnel review monitoring alerts and respond promptly whenever issues are identified.

Administrative access is restricted to authorized personnel only. Individual usernames and passwords are required for all system and data access. Strong password policies, including minimum length and complexity requirements, are enforced where applicable.

User Account Security

Users access their accounts using either an Account/User Name or a verified email address, together with a password chosen by the user. Account names are initially assigned by Baseline Data Systems and may be modified upon customer request.

Network Security

All customer data transmitted to and from our systems is encrypted using industry-standard SSL/TLS protocols.

Software Security

Baseline Data Systems develops all application code within the United States. Any discovered vulnerabilities or security-related issues are reviewed promptly and addressed as appropriate.

Backups

Customer data is backed up daily and replicated to redundant systems for disaster recovery purposes. Encrypted backup files are also created daily and are retained, rotated, and securely destroyed in accordance with our internal retention procedures. Upon request and at our discretion, Baseline Data Systems may restore full or partial customer data from available backups for a reasonable service fee. Customers do not have direct access to backup files.

Disclaimer

No security measures can guarantee complete protection at all times. While Baseline Data Systems takes extensive precautions to safeguard customer data, we cannot warrant or guarantee absolute protection against every possible threat or unauthorized access.

© 1991-2026 - Baseline Data Systems, Inc.