Security and DPA
Security practices and privacy support for teams evaluating Image to Layers.
Last updated: September 10, 2026
Security practices
- TLS is used for data in transit.
- Access to production data is restricted to operational needs and protected by service authentication.
- Signed URLs and authenticated routes are used for protected file access where supported.
- We monitor operational failures and abuse signals and investigate reported security issues.
Data processing agreements
Business customers with documented compliance requirements may contact support@imagetolayers.com to discuss a data processing agreement, subprocessors, transfer mechanisms, retention, and deletion requirements. Availability depends on the service configuration and the parties' roles.
Report a vulnerability
Please report suspected security vulnerabilities privately to support@imagetolayers.com with enough detail to reproduce the issue. Do not include unnecessary personal data or secrets.