Resonant

Trust & Security

Your clients trust you with sensitive conversations. Resonant protects your data with encryption, strict access controls, and independent security testing, so you can coach with peace of mind.

Team collaborating at a whiteboard in a modern office

Security first, not an afterthought

Resonant was architected from the beginning with a strong privacy and security foundation. We didn't defer on security until it became important. It's always been important. Your coaching business runs on your clients' trust. We're honored to be your partner in keeping that trust, and we work hard to maintain it.

New change

Code review

Every change reviewed before merge

Automated security tests

Any failure blocks the release

Static analysis

Every line scanned

Dependency audit

Known-vulnerability check

OWASP Top Ten checks

Industry best practices

Full regression suite

1,238 tests · all passing

Shipped to production

Independent penetration testing

Regular, by an offensive-security firm

Built-in security

The goal of our security program is simple: no one but you can access your clients' information.

We use a defense-in-depth approach: layered safeguards, both technical and process-based, so your data is never protected by just one measure.

In practice, that means automated security testing on every change, code informed by industry best practices like the OWASP Top Ten, and regular penetration testing by an independent firm that specializes in offensive security.

Coach working comfortably on a laptop

Privacy

We take privacy and confidentiality very seriously. It's one of the core principles of the platform.

Your client data is yours; we never sell, rent, or monetize your data. It's that simple.

We also support one-click deletion of a client's data, if a client requests it of you. This makes it easy for you to comply with your regulatory requirements.

You can read more about our approach to privacy in our Privacy Policy.

Engineer working at their desk

Reliability

We've worked hard to ensure that Resonant is reliable and accessible.

If a component were to fail, our infrastructure — deployed across multiple availability zones with automated failover — automatically replaces it with a new one, without human involvement. If a server goes down, the chances are low that you would notice.

If an issue is detected that can't be fixed automatically, Resonant engineers are paged immediately and work to resolve the issue as quickly as possible.

We maintain continuous, encrypted backups of Resonant to make sure we can get back online quickly in the event of a disaster. Crucially, we monitor and test these backups regularly.

How we earn your trust

From the data centers we run on to the tests we run on every change, security is built into every layer of Resonant.

Safe & Secure

Resonant runs on infrastructure hosted in ISO 27001-certified and SOC 1 + 2 accredited data centers, so the foundation beneath your data meets the industry's strictest physical and network security standards.

Data Encryption

All data is encrypted at rest with AES-256, and in transit with TLS 1.3. Resonant's infrastructure is designed with layers of protection at each step.

Access Control

Access to production systems is tightly restricted and protected by multi-factor authentication. Auditing and alerting are in place to flag anything unusual.

Payment Security

Charge clients without ever handling card details. Every payment runs through Stripe, a PCI DSS Level 1 certified processor trusted by millions of businesses.

Continuous Security

Every change to Resonant must pass our automated security tests and full regression suite before it ships. We also regularly work with independent firms to conduct penetration testing and security assessments.

Resilient

Continuous, geographically redundant, encrypted backups remove single points of failure. We monitor and regularly test our backups.

Ready to coach with peace of mind?