Data protection

Protecting backup workflows throughout their lifecycle.

MindShield combines secure transport, access governance and customer-controlled operational practices to reduce exposure.

Last reviewed: 20 July 2026

Protection principles

  • Use HTTPS for Agent-to-cloud control communication.
  • Support AES-256 encrypted backup workflows.
  • Restrict administrative access by organization and permission scope.
  • Keep retention and deletion decisions visible and governed.
  • Avoid collecting business data that is not required for service operation.

Data lifecycle

Implemented

Transmission

Control traffic is designed for authenticated HTTPS transport.

Implemented

Backup encryption

Backup workflows support AES-256 encryption; key handling must follow the selected deployment model.

Implemented

Retention

Policies define how long backup records and files are intended to remain available.

In progress

Documented deletion process

Formal customer-facing deletion procedures and timelines continue to be documented.

Customer ownership

Customers retain responsibility for their business data, lawful processing, destination selection, retention requirements and authorization of restore operations.