Security

Securing the vault, layer by layer.

Platform Security

StackFi is a read-only research platform. We do not hold custody of any assets, process financial transactions, or store wallet credentials. This architecture eliminates entire categories of attack vectors common to fintech platforms.

Infrastructure

All traffic is served over HTTPS with TLS 1.3. Our infrastructure is hosted on globally distributed edge networks with automatic DDoS mitigation. Static content is served from CDN endpoints for both performance and resilience.

Data Protection

The only personal data we store is subscriber email addresses, which are encrypted at rest and transmitted over secure channels. We follow the principle of minimal data collection — if we do not need it, we do not store it.

Content Integrity

All market data is sourced from verified providers and undergoes automated freshness checks. When data becomes stale, it is clearly labeled on the platform. Our analysis content goes through a multi-stage review pipeline before publication.

Responsible Disclosure

If you discover a security vulnerability, please report it to [email protected]. We take all reports seriously and will respond within 48 hours. We appreciate responsible disclosure and will credit researchers who help us improve.

What We Do Not Do

  • We do not provide financial advice or investment recommendations
  • We do not hold or manage any assets on behalf of users
  • We do not process payments or financial transactions
  • We do not store passwords — there are no user accounts
  • We do not sell or share personal data with third parties