Security & Privacy

They're built into TeamData from the ground up

TeamData doesn't store your Master Password
Only you know it. Only you have the key to unlock the encrypted data and files in your TeamData account. For extra protection, your Master Password is hashed using bcrypt with salting and stretching.

Important: If you lose your Master Password and need to reset it, you will delete all your encrypted information that is not shared with other team members.

How we protect your data

Your sensitive data and all your files are encrypted while stored using 256-bit AES encryption and RSA 2048 asymmetric encryption - the same algorithms relied on by banks, the U.S. military and the U.S. government.

We protect all your information from browser to server with Secure Socket Layer encryption in a configuration that supports forward secrecy on most browsers. Just like with a bank, it prevents eavesdropping when you’re in your TeamData cloud.

Your TeamData cloud lives in Rackspace, a premier hosting provider, which has 24/7 physical and biometric protections, in addition to firewalls, intrusion detection systems, and an array of other technological safeguards. Rackspace holds a number of certifications, including SSAE16 Type II SOC 1, SOC 2 and SOC 3 Reports, is Safe Harbor certified, and is PCI compliant.

Don’t miss our security brief >>

  • 256-bit AES encryption and RSA 2048 asymmetric key encryption
  • Default 128-bit SSL encryption with forward secrecy
  • Bcrypt with salting and stretching for passwords
  • Rackspace

Sensitive and non-sensitive information

We designate data fields as sensitive (i.e., encrypted) for the type of information you'd expect - usernames and passwords, account numbers, ID numbers, financial, health, and much more - largely based on U.S guidelines. All files are also marked sensitive.

A lock or ***** symbol will show you what is and isn’t encrypted. While a few of our Ops employees can technically access non-sensitive information, they only can do so in strict accordance with our Privacy Policy.

Our business model is based on privacy

Most existing information management solutions have security vulnerabilities built in because their business depends on knowing, using or even monetizing your information, which can open holes from the outset. At Personal, we don’t need to know or use your data and files in any way, so we’ve purposely cut off access to your sensitive data and all your files, which are encrypted even to us.

Privacy by Design

Personal is the first user-facing online company to be named an ambassador for Privacy by Design. We received this recognition because our technology and business practices put you in control of what you store and share.

Learn more about the Privacy by Design Program >>

See the Privacy by Design report >>

Our systems

Symantec and Verisign scan our sites and applications to verify security. We also have certified "Ethical Hackers" and "Penetration Testers" on staff who constantly monitor for potential threats and vulnerabilities.

The right to take your data – and be forgotten

You can export all of your data and files from TeamData, and permanently delete all copies from our servers.

We need your help to protect your TeamData account. Here are a few best practices:

  • Pick a strong Master Password using a combination of capital and lower case letters, numbers and special symbols. Don’t forget it and don't compromise it.
  • Make sure your Master Password is unique for TeamData and don't use it for other sites.
  • Change your Master Password regularly.
  • Share information only with those you trust, and don’t click links or open files from people you don't know.
  • Keep your computer and browser software current with security updates.
  • If you think your Master Password has been compromised or there's been unauthorized activity in your account, immediately change your Master Password and contact us at security AT