Security & Trust

Your Data Deserves Serious Protection

MindSalt helps teams manage time, expenses, approvals, PTO, budgets, and reporting, so protecting that information is part of how we build and operate the platform.

Protecting the data behind the work

MindSalt is designed for organizations that rely on accurate time, expense, project, and employee data. We treat that responsibility seriously.

We use industry-recognized frameworks, including the NIST Cybersecurity Framework and CIS Critical Security Controls, to help shape and review our security practices.


Secure access controls

MindSalt includes user permissions and role-based access controls so organizations can manage who has access to sensitive account, employee, project, billing, approval, and reporting information.


Encrypted connections

MindSalt uses encrypted connections to help protect data as it moves between users and the application.


Data backups

Customer data is backed up regularly as part of our recovery and business continuity practices.


Monitoring and maintenance

Systems are monitored and maintained to help identify issues, keep services running reliably, and support ongoing security.


Administrative safeguards

Administrative areas and account settings are protected with permission controls so sensitive actions are limited to authorized users.


Responsible development

Security is considered throughout development, deployment, and ongoing maintenance, including careful handling of authentication, sessions, permissions, and customer data.

FAQ

Common Security Questions

Does MindSalt encrypt data in transit?

Yes. MindSalt uses encrypted connections to help protect data as it moves between users and the application.

Can we control what users can access?

Yes. MindSalt includes permissions and role-based access controls so organizations can manage access to employees, projects, reports, approvals, account settings, and other sensitive areas.

Does MindSalt back up customer data?

Yes. MindSalt maintains backup and recovery practices designed to help protect customer data and support business continuity, including backups performed several times a day.

How can customers help keep their account secure?

Customers should use strong passwords, limit administrative access, review permissions regularly, remove users who no longer need access, and follow their internal policies for handling sensitive business data.

Does MindSalt support single sign-on?

Yes. MindSalt supports single sign-on for eligible accounts. SSO helps organizations centralize access management, simplify employee login, and better control account access through their existing identity provider.

Get started with MindSalt

MindSalt helps teams manage time, expenses, projects, approvals, PTO, and reporting in one connected system, with security practices designed to protect the data behind the work.