Security Policy

Last Updated: April 6, 2026  |  Next Review: October 2026

2274638 Ontario Inc. takes the security of the GRATEIC platform and your data seriously. This Security Policy describes the technical and organizational measures we implement to protect the confidentiality, integrity, and availability of the Service.

1. Infrastructure Security

1.1 Cloud Hosting

GRATEIC is hosted on Microsoft Azure, a leading enterprise cloud platform with SOC 2, ISO 27001, and FedRAMP certifications. Our infrastructure is deployed in Azure Canada Central and Canada East regions, ensuring Canadian data residency.

1.2 Network Security

2. Application Security

2.1 Authentication

2.2 Authorization

2.3 Data Protection

3. Operational Security

3.1 Monitoring and Logging

3.2 Patch Management

3.3 Backup and Recovery

4. Organizational Security

5. Vulnerability Disclosure

We welcome responsible disclosure of security vulnerabilities. If you discover a security issue in the GRATEIC platform, please report it to our security team before public disclosure.

Security Disclosure: security@grateic.com

Please include: description of the vulnerability, steps to reproduce, potential impact, and your contact information. We commit to acknowledging reports within 48 hours and providing updates throughout our investigation.

We ask that you:

6. Compliance and Certifications

7. Incident Response

In the event of a confirmed security incident affecting customer data, we will:

8. Contact

Security Team: security@grateic.com

General Support: support@grateic.com

Company: 2274638 Ontario Inc.

Website: www.grateic.com