This Security Statement describes administrative, technical, and organizational safeguards used by MyChairHQ to protect the Platform and user data.
MyChairHQ maintains a security program designed to protect the confidentiality, integrity, and availability of the Platform and personal information. Security measures are risk-based and may evolve as the Platform, providers, and threat environment change.
MyChairHQ uses safeguards that may include:
MyChairHQ may use administrative controls such as confidentiality obligations, limited personnel access, provider review, support-access procedures, policy enforcement, security reviews, and operational monitoring.
MyChairHQ relies on third-party providers for hosting, payments, SMS, email, AI, media, calendar, caching, error monitoring, and job processing. MyChairHQ selects providers based on business and security needs and requires provider commitments appropriate to their role.
Professional is responsible for:
If MyChairHQ confirms a security incident affecting personal information, MyChairHQ will notify affected parties as required by applicable law, the Privacy Policy, and the Data Processing Addendum. Notifications may include available facts, affected data categories, mitigation steps, and recommended actions. A notification is not an admission of fault or liability.
Security concerns may be reported to security@mychairhq.com. Reports should include a description of the issue, affected URL or feature, steps to reproduce, potential impact, and contact information. Do not access, copy, alter, destroy, exfiltrate, or disclose data that does not belong to you. Do not perform denial-of-service testing or social engineering.
No system is completely secure. MyChairHQ cannot guarantee that unauthorized access, data loss, outages, or security incidents will never occur.