Security Policy
At SoftGen, protecting the confidentiality, integrity, and availability of our systems, services, and client information is a core priority. This Security Policy outlines the security practices we implement to safeguard our website, development environments, and the information entrusted to us.
1. Purpose
The purpose of this Security Policy is to describe the security measures adopted by SoftGen to protect information, software assets, and digital infrastructure from unauthorized access, misuse, disclosure, alteration, or destruction.
2. Scope
This Security Policy applies to:
- The SoftGen website & client communications
- Software development projects & source code repositories
- Internal development environments & cloud-based delivery services
- Employees, contractors, and authorized personnel working with SoftGen
3. Information Security Principles
SoftGen follows industry-recognized security principles to:
- Protect confidential client information
- Preserve the integrity of software and data
- Maintain service availability where reasonably possible
- Reduce security risks through continuous improvement
4. Access Control
Access to internal systems and project resources is restricted to authorized personnel based on business need.
Security measures may include:
- Role-based access controls
- Strong password requirements
- Multi-factor authentication where supported
- Periodic review of user access
- Immediate revocation of unnecessary access
5. Secure Software Development
Security is considered throughout the software development lifecycle.
Where appropriate, we apply practices such as:
- Secure coding standards
- Dependency management
- Version control systems
- Code review processes
- Testing before deployment
- Timely application of patches
6. Data Protection
Client information is handled with appropriate care.
Reasonable safeguards may include:
- Encryption of data in transit using HTTPS/TLS
- Restricted access to confidential information
- Secure storage of project assets
- Regular backups where applicable
- Controlled sharing of project information
7. Infrastructure Security
SoftGen utilizes reputable cloud infrastructure and hosting providers to support service delivery.
Security measures may include:
- Secure hosting environments
- Network monitoring by infrastructure providers
- Firewall protections where available
- Infrastructure updates and maintenance
- Redundancy and backup mechanisms where appropriate
8. Third-Party Services
Some services provided by SoftGen may rely on trusted third-party providers, including cloud hosting platforms, code repositories, email providers, payment processors, or development tools. While we carefully select service providers, their systems operate under their own security practices and policies.
9. Incident Response
If a security incident is identified, SoftGen will take reasonable steps to:
- Investigate the incident & contain potential risks
- Restore affected services where possible
- Notify affected clients when required by applicable law or contractual obligations
- Review the incident to improve future security measures
10. Responsible Disclosure
We appreciate reports of potential security vulnerabilities affecting our website or services. If you believe you have discovered a security issue, please report it responsibly by contacting us directly. Please include sufficient information to help us reproduce and investigate the issue.
We request that you:
- Avoid accessing or modifying data that does not belong to you.
- Do not intentionally disrupt our services.
- Do not publicly disclose vulnerabilities before we have had a reasonable opportunity to investigate and address them.
SoftGen is committed to reviewing all legitimate security reports in good faith.
11. Employee & Contractor Responsibilities
Individuals working with SoftGen are expected to:
- Protect confidential information & follow security procedures
- Use authorized systems responsibly
- Report suspected security incidents promptly
- Avoid unauthorized disclosure of client information
12. Business Continuity
SoftGen takes reasonable measures to reduce service disruption through secure development workflows, backup procedures, reliable cloud infrastructure, and recovery planning.
While we strive for high availability, uninterrupted service cannot be guaranteed.
13. Security Limitations
No website, application, or information system can guarantee absolute security. Although SoftGen implements reasonable administrative, technical, and organizational safeguards, users acknowledge that all internet-based services carry inherent security risks.
14. Policy Updates
SoftGen may revise this Security Policy periodically to reflect changes in technology, legal requirements, or business operations. The updated version will be published on this page together with the revised "Last Updated" date.
15. Contact
If you have questions regarding this Security Policy or wish to report a potential security concern, please contact us: