Security & Trust
Patent information is sensitive. Here's how SEPPi handles the data behind every report.
Security & Trust
Encryption in transit and at rest
All traffic to SEPPi is served over HTTPS. Passwords are never stored in plain text, and account data is held in Supabase's managed, encrypted Postgres infrastructure.
Data minimization
We collect only what's needed to authenticate you, generate reports, and take payments — patent numbers, generated reports, and payment history. Full details are in our Privacy Policy.
Access control
Row-level security policies ensure your reports and payment history are only ever accessible to your account. Administrative access is limited to designated staff.
Third-party processing
To generate a report, patent claim text and referenced standard excerpts are sent to Anthropic's Claude API and Google's Gemini API for analysis, and patent numbers are sent to SerpApi (Google Patents) for lookup. These providers are bound by agreements to handle data securely. The full list of processors is in our Privacy Policy.
Payments
Card details are never stored on SEPPi's servers. Payments are handled directly by NicePay or PayPal, PCI DSS-compliant payment processors.
Report a concern
If you have a security question or want to report a vulnerability, contact us at info@seppi.xyz.