Security

How Quarternd handles your data.

This page is written to hold up under diligence. Where a control does not exist yet, that is stated plainly rather than implied.

Certification status

Quarternd does not currently hold a SOC 2 report. SOC 2 Type I is planned for Q2 2027. No claim of certification is made or implied anywhere on this site prior to that report being issued.

Data storage

Fund data is stored in a managed relational database hosted with a major cloud provider in the United States. Each workspace's data is logically isolated by workspace identifier at the application layer.

Encryption

Data is encrypted in transit using TLS 1.2 or higher on every connection. Data at rest is encrypted using AES-256 at the storage layer.

Access controls

Production access is limited to the founding team. Access to a workspace's fund data requires authentication as a member of that workspace. Administrative access to infrastructure is logged.

Backup and recovery

Because the ledger is append-only and balances are always derived from entries rather than stored, the primary integrity guarantee is structural: a restored database recomputes to the same balances. Automated daily backups are retained for 30 days.

Subprocessors

SubprocessorPurpose
Cloud infrastructure providerHosting, database, backups
AnthropicOptional AI drafting assists (never the money path)
Email delivery providerTransactional notices and confirmations

Incident contact

To report a security concern, email shadman@quarternd.com directly. This is monitored by the founder.