An illustration depicting a lock

PrepLink + Security

Your information is safe.

Our goal is to transform the accounting industry for the better, but the backbone of our success is providing a safe and trustworthy place for you to share information with the people you choose to work with. Protecting your data is our top priority.

Will PrepLink's software be available?

Yes. PrepLink’s availability is consistently above 99.99%. Customer data is 100% backed up to multiple online replicas with additional snapshots and other backups.

What if something isn't working as expected?

If something isn’t working correctly, please email and we’ll look into the issue right away.

Does PrepLink monitor its systems and software?

Yes. Our operations teams monitor software and application behavior 24x7x365 using proprietary and industry-recognized solutions.

Does PrepLink encrypt data in transit?

Yes. Sessions between you and your portal are always protected with top end in-transit encryption, advanced TLS (1.0, 1.1, and 1.2) protocols, and 2,048-bit keys.

Does PrepLink encrypt data at rest?

Yes. All files and information you send to PrepLink are encrypted in our databases and file servers all the time.

Is my website or data protected by a Web Application Firewall and network firewall?

Yes. PrepLink prevents attacks with sophisticated monitoring and protections including a high-grade web application firewall and tightly controlled network-level firewalling. In addition, PrepLink’s Distributed Denial of Service (DDoS) prevention defenses protect your site and access to your products from attacks.

Does PrepLink incorporate security into its software development lifecycle (SDLC)?

Yes. We use automatic unit testing alongside human review and bug fixes arrive dozens of times a day.

Are physical security protections in place to protect my data?

Yes. PrepLink data centers is strictly controlled and monitored. Our data center partners include Digital Ocean (we host in NYC1, which is SOC 1 Type II and SOC 2 Type II compliant), Heroku (who uses Amazon AWS, which is SOC 1 and SOC 2 compliant), and Amazon AWS S3.

Can the PrepLink software respond quickly to new security needs or threats?

Yes. Between our streamlined, rapid approach to application delivery and our highly automated server infrastructure, PrepLink quickly addresses security issues as they arise. These technology and process structures allow PrepLink to rapidly adapt as new threats are identified.

Does the PrepLink infrastructure detect and prevent attacks?

Yes. PrepLink uses enterprise-grade firewalling, routing, intrusion prevention, and behavior analytics capabilities to protect infrastructure and thwart attacks.

Does PrepLink rapidly patch and update when vulnerabilities are identified?

Yes. PrepLink’s patch management process pushes security updates fast and consistently. In most situations, patching is handled by deploying new server instances with the most up to date patches and de-provisioning out of date servers.

What external audits or assessment results are available to review?

Our data center providers maintain ISO 27001, SOC2 Type II, and many other certifications.