Security
Effective Date: May 29, 2025
At CMA Forms (forms.thecma.xyz), protecting your data and maintaining a secure environment is a top priority. This page outlines our approach to security and how you can help keep your information safe.
1. Data Protection Measures
- We use Firebase Authentication and Firestore, hosted securely on Google Cloud Platform, with robust encryption in transit and at rest.
- Password data is securely hashed and never stored in plaintext.
- Access to user data is strictly controlled and limited to authorized systems only.
- Form data is stored according to your settings: either on your Google Sheets (via your API permissions) or in our Firestore database.
2. Secure Development Practices
- We follow best practices to prevent common web vulnerabilities (e.g., XSS, CSRF).
- Third-party libraries are regularly reviewed and updated.
- Regular testing is conducted to ensure system integrity.
3. User Responsibilities
- Keep your account credentials confidential and use strong, unique passwords.
- Review permissions carefully when connecting third-party services like Google Sheets.
- Report any suspicious activity or security concerns promptly.
4. Reporting Security Issues
If you discover a security vulnerability or have concerns, please contact us immediately:
5. Updates to Security Policies
We may update this page as security practices evolve. Check back periodically to stay informed about our latest measures.