Hosting and Transport
The website is served over HTTPS with security headers for MIME sniffing, clickjacking, referrer handling and browser permissions. Hosting is designed to support monitored deployments, alerting and rollback procedures for site changes.
Payments
Payments are handled by app stores or payment providers. Brewfather does not need to receive your full card details to provide the service.
Analytics and Monitoring
Website analytics, Web Vitals and client error reporting are limited to aggregate performance, reliability and conversion signals when enabled. These tools are not intended to expose brewing records.
Responsible Disclosure
If you believe you have found a security issue, email hello@brewfather.app with enough detail for us to reproduce the issue. Please do not access, alter, delete or disclose data that is not yours.
Account Safety
Use a strong password, keep your email account secure and avoid sharing account access. If you think your account is compromised, contact support immediately.