Trust & Security
Plain, verifiable statements about how the platform handles security, data and payments. No claims we can't back.
Security practices
- Card and crypto payments are processed by Stripe and NOWPayments — Getly never stores your card details.
- All traffic is served over HTTPS/TLS.
- Authentication is OAuth and email magic-link based.
- Uploaded files are validated and scanned before delivery; flagged content goes to moderation.
- APIs are rate-limited and protected against cross-site request forgery.
Subprocessors
The third-party infrastructure providers that process data on Getly's behalf.
Since 2026-08-31 the application and its PostgreSQL database run on a dedicated server administered by Getly (hosted by netcup, EU). Vercel and Neon no longer process any data.
Full data-handling detail is in our privacy policy: /privacy.
Report a vulnerability
Found a security issue? We welcome responsible disclosure — please give us a reasonable window to fix before going public. Email security@getly.store.