LEGAL

Security and Trust

Last updated: August 31, 2026

Trust Statement

Trust is fundamental to financial technology. BeSmartee is committed to protecting the data, systems, and institutions that rely on our technology through strong security practices, responsible data management, regulatory compliance, and operational resilience.

Our security and compliance programs are designed around established industry standards and applicable regulatory requirements and are regularly evaluated to address evolving risks, technologies, and regulatory expectations.

01

Information Security

Information Security Statement

BeSmartee maintains enterprise-level security practices and safeguards designed to protect our networks, systems, and the information entrusted to us.

Our information security program includes administrative, technical, and organizational controls designed to safeguard the confidentiality, integrity, and availability of client data throughout its lifecycle.

Security practices address areas including access controls, data protection, system monitoring, risk management, incident response, and business continuity.

Security & Compliance Standards

BeSmartee’s security practices are independently evaluated against recognized industry standards, including:

  • SOC 2 Type II
  • Payment Card Industry Data Security Standard (PCI DSS)

02

Compliance

Compliance Statement

BeSmartee maintains a compliance management program designed to support adherence to applicable regulatory requirements and industry standards. Compliance practices are integrated across the organization and periodically reviewed to evaluate their effectiveness and address changes in the regulatory environment.

Our compliance program considers:

  • Industry standards and best practices
  • Applicable state and federal regulations
  • Relevant privacy and data protection requirements
 
Laws & Regulations

BeSmartee’s compliance program is designed to address applicable laws and regulatory requirements relevant to our business and services, including:

  • Gramm-Leach-Bliley Act (GLBA)
  • California Consumer Privacy Act (CCPA)
  • Red Flags Rule, as applicable
  • Applicable state data breach notification and privacy requirements
  • Other applicable federal and state regulatory requirements
 
Compliance Management

BeSmartee maintains processes designed to identify, evaluate, and respond to evolving regulatory requirements. These include:

  • Compliance Management Program (CMP)
  • Regulatory Change Monitoring and Management

03

Business Continuity

Business Continuity Statement

BeSmartee maintains a business continuity program designed to mitigate operational and technology risks and support the availability and recovery of critical business functions in the event of service disruptions, natural disasters, or other unforeseen events.

Business continuity and recovery procedures are periodically reviewed and tested to evaluate their effectiveness and identify opportunities for improvement. Relevant personnel participate in training and exercises designed to support organizational preparedness and effective response and recovery.

04

Privacy & Data Protection

BeSmartee is committed to responsible data practices and protecting the privacy of the information entrusted to us.

We maintain policies, procedures, and safeguards designed to support the appropriate collection, use, handling, and protection of personal and sensitive information in accordance with applicable privacy and data protection requirements.

For more information about how BeSmartee collects, uses, and protects personal information, please review our Privacy Policy and Cookie Notice.

05

Security & Compliance Inquiries

For additional information about BeSmartee’s security, privacy, or compliance practices, contact info@besmartee.com.

© 2026 BeSmartee, Inc. All rights reserved.

Terms of Service

Cookie Policy
Data Processing Addendum