SOC 2 Type II Certified ISO 27001 Certified GDPR Compliant

Security at quiXzoom

We take security seriously. From encryption at rest and in transit to independent audits and a responsible disclosure program — your data and our platform are protected by industry-leading practices.

Trust & Compliance

Independent certifications and compliance frameworks that validate our security posture.

Certified

SOC 2 Type II

Independent audit of security, availability, and confidentiality controls. Report available under NDA.

View details →
Certified

ISO 27001

International standard for Information Security Management Systems (ISMS). Certified by an accredited body.

View details →
Compliant

GDPR

Full compliance with EU General Data Protection Regulation. Data subject rights, DPO, and DPIAs in place.

View details →
Active

EU Data Residency

All EU customer and Zoomer data stored exclusively in European data centers with full redundancy.

View details →
Active

Stripe Payouts

PCI DSS Level 1 compliant payment processing via Stripe Connect. Secure KYC and fast payouts.

View details →
Available

Security Whitepaper

Detailed overview of our security architecture, encryption practices, and incident response procedures.

Download PDF →

Responsible Disclosure

Found a vulnerability? We want to know. Our program is open to all security researchers.

How to Report

Send your findings to security@quixzoom.com. Please include:

  • A clear description of the vulnerability and its impact
  • Steps to reproduce (proof of concept preferred)
  • Affected systems, endpoints, or versions
  • Your contact information and preferred disclosure timeline

PGP Key: Available below for encrypted communication.

Our Commitment

  • No legal action for good-faith research within program scope
  • Safe harbor — we will not pursue DMCA or CFAA claims
  • Public recognition in our Hall of Fame (with your consent)
  • Financial rewards for qualifying vulnerabilities via our bug bounty
  • Transparent communication throughout the remediation process
48h Acknowledgment
90d Fix Target
100% Good Faith Safe Harbor

Security Contact

For vulnerability reports, security incidents, or questions about our security posture.

security@quixzoom.com
PGP Fingerprint: AAAA BBBB CCCC DDDD EEEE FFFF 0000 1111 2222 3333
Key ID: 0x22223333
(Placeholder — replace with actual PGP key before publishing)

Bug Bounty Rewards

Financial rewards for qualifying vulnerabilities, based on severity and impact.

Critical

$2,500+

Remote code execution, full data breach, authentication bypass affecting all users

High

$1,000+

SQL injection, XSS affecting sensitive endpoints, privilege escalation

Medium / Low

$250+

CSRF, information disclosure, security misconfigurations with limited impact

Reward amounts are indicative and may vary based on exploitability, impact, and report quality. Bonuses for complete write-ups with remediation suggestions.

Hall of Fame

Recognizing the security researchers who have helped make quiXzoom safer.

Researcher Date Finding Severity Status
Awaiting first disclosure

Want your name here? Submit a report and help us improve.

Switch Language

You are about to switch to:

Language: Swedish
Domain: quixzoom.se
Country: Sweden

Fortsätt till svenska webbplatsen?

Select Region

Switch Language

You are about to switch to:

Language: Swedish
Domain: quixzoom.se
Country: Sweden

Fortsätt till svenska webbplatsen?

Select Region