EvolveAMSEvolveAMS

Trust & Security

Last updated: July 31, 2026

Our Approach

Your association's data (member records, financial transactions, communications) is the heart of your organization. This page describes the practices we follow to keep it secure, private, and available.

Security Practices

  • Encryption: data is encrypted in transit (TLS) and at rest. Sensitive credentials such as third-party API tokens are additionally encrypted at the application level.
  • Role-based access control: fine-grained permissions govern every action, from viewing a contact to posting a journal entry. Administrators define custom roles to match their organization.
  • Audit logging: administrative and data-changing actions are recorded in tamper-resistant audit logs your administrators can review and archive.
  • Rate limiting & input validation: the platform applies request validation, sanitization, and abuse-prevention limits across its public and authenticated surfaces.

Tenant Isolation

EvolveAMS is a multi-tenant platform where every record is scoped to your organization. Queries, permissions, file storage, and AI features all enforce tenant boundaries, so one organization's data is never visible to another. Cross-tenant references are guarded at the application layer in addition to database-level scoping.

Data Protection & Ownership

You own your data. We process it solely to deliver the platform, never sell it, and never use it to train AI models. You can export your data, and upon termination you have a 30-day window to take it with you, as described in our Terms of Service.

Backups & Reliability

We take regular backups of platform data and verify our ability to restore them. Database changes are applied through controlled, backup-gated migration procedures, and the platform is designed to fail loudly rather than silently corrupt data.

Responsible AI

Our AI features are permission-gated, tenant-isolated, and draft-first; a human reviews consequential actions before they take effect. Read the full details in our AI Policy.

Questions & Reporting

To report a security concern or ask about our practices, contact security@evolveams.ai. See also our Privacy Policy and Terms of Service.