Privacy & Security
Your data belongs to you.
We take that seriously.
Canivox is built for professional trainers who hold sensitive client data. Every security decision — from how we store entry codes to how long you stay logged in — was made with your clients' privacy in mind.
How We Protect You
Security built into every layer
Not bolted on after the fact — these protections are core to how Canivox is engineered.
Encrypted at rest & in transit
All data travels over TLS/HTTPS. Sensitive fields like door codes and gate codes are encrypted with AES-256-GCM — the same standard used by banks — stored as ciphertext your database can't read without the key.
Entry codes — reveal only on demand
Door and gate codes for your clients are stored encrypted. They're never shown in plain text by default — you click once to reveal a single code, and that action is logged to your audit trail.
Full audit log
Every sensitive action — data exports, client deletes, entry code reveals — is recorded with a timestamp, your user ID, and IP address. Your admin panel gives you a paginated view of your entire audit history.
15-minute inactivity timeout
If you walk away from your computer, Canivox signs you out automatically after 15 minutes of inactivity. Your client data doesn't stay open on an unattended screen.
Isolated by account
Every trainer's data is scoped to their account. There is no cross-account data access. Your client list, session notes, and invoices are invisible to other users on the platform.
Access controls & role-based auth
Multi-trainer teams have role-based access. Owners see everything; trainer-role accounts are scoped to the data they need. Authentication is handled by Clerk with industry-standard OAuth2 / OIDC.
Your Client Data
You are the data controller. We are the processor.
Under GDPR and CCPA, when you enter client names, contacts, and behavioral notes into Canivox, you remain the data controller — you own that data and are responsible for it. We process it only on your behalf, only to deliver the service.
This is an important distinction. It means we can't sell your clients' data, use it for advertising, or hand it to anyone without your instruction. The data in your account belongs to you and your clients.
Our commitments to you
- We never sell or share your client data with third parties for marketing
- We never use your client data to train AI models
- Client data is stored in isolated, access-controlled tables per account
- You can export all your data as JSON or CSV at any time from Settings
- Deleting a client triggers a hard delete — all records are permanently removed
- On account closure, data is purged within 30 days
Data Portability
Export everything. No lock-in, ever.
GDPR Article 20 and CCPA §1798.100 give you the right to take your data with you. We make it easy.
All your data
Clients, dogs, sessions, and invoices — everything in one export file.
JSON or CSV
Machine-readable JSON for developers or a spreadsheet-ready CSV for your records.
One click in Settings
Go to Settings → Data Privacy & Compliance and download your full data archive instantly.
Right to be forgotten — GDPR Article 17 / CCPA §1798.105
When you delete a client from Canivox, their record is permanently and irreversibly removed from our database — not just archived. This hard delete is recorded in your audit log for compliance purposes.
Regulatory Compliance
Built for compliant training businesses
Whether you're subject to GDPR (EU trainers), CCPA (California), or IAABC/IACP professional standards, Canivox has the infrastructure to support your obligations.
GDPR (EU & UK)
- Data controller / processor separation
- Right of access (data export)
- Right to erasure (hard delete)
- Data portability (JSON / CSV)
- Breach-ready audit logs
- Consent tracking built-in
CCPA (California)
- Right to know what's collected
- Right to delete personal information
- Right to data portability
- No sale of personal information
- Opt-out of data sharing
Professional Standards
- IAABC member-ready recordkeeping
- IACP compliance documentation
- Session logs with timestamps
- Training plan version history
- Consent forms for clients
- Audit trail for all sensitive actions
Common Questions
Privacy FAQ
Can Canivox see my clients' data?
Our engineers have highly restricted production access governed by internal access controls. We can access data only when required to diagnose a technical issue — and such access is never done without justification. We never browse client records for non-operational reasons.
What happens to my data if I cancel my subscription?
Your data remains accessible for the remainder of your paid period. After account closure, your data is retained for up to 30 days for possible reactivation, then permanently deleted. We recommend downloading a full export before closing your account.
Are entry codes (door/gate codes) really encrypted?
Yes. Entry codes are encrypted with AES-256-GCM before being written to the database. The encryption key is derived from a server-side secret that is never stored in the database. Even if someone obtained the raw database rows, the codes would be unreadable ciphertext.
Does Canivox use my data to train AI?
No. The content you enter — client names, session notes, training plans — is never used to train AI models, ours or our providers'. When you use AI features, your prompts are processed by a reputable AI provider under a data processing agreement that prohibits model training on your data.
What is the audit log and who can see it?
The audit log is an immutable, append-only record of sensitive operations in your account — exports, client deletes, and entry code reveals. Only the account owner can view the audit log, accessible in Admin → Audit Log.
Where is my data stored?
Data is stored in the United States on managed PostgreSQL infrastructure. We use reputable cloud providers with SOC 2 certifications. For international trainers: by using the Service, you consent to data being processed in the US, and we take steps to ensure international data transfers comply with applicable law.
Can I request deletion of my personal data?
Yes. Email us at privacy@canivox.com with your request. For trainer account data, we'll permanently delete your records within 30 days. For your clients' data, you can delete individual clients directly from the platform, or request a full purge on account closure.
Legal documents
The full legalese — because you deserve to know exactly what you're agreeing to.
