Security Policy
Effective date: May 18, 2026
Overview
We treat security seriously. This document outlines measures we take to protect user data and website operations.
Data protection
Any personal data collected via forms is stored client-side unless you provide it to us through email or a future server-side form. For production uses, we recommend encrypted transport (HTTPS), server-side storage with access controls, and regular backups.
Payment safety
We do not process payments directly on the site. Payment options may include third-party processors or manual methods. We advise users to verify payment instructions before sending funds and avoid sending funds to unknown wallets without confirmation.
Operational security
- Use HTTPS for all pages when deploying publicly.
- Keep server software and dependencies up to date.
- Use strong passwords, multi-factor authentication, and role-based access for admin areas.
- Log and monitor access to detect anomalous activity.
Incident response
If a security incident occurs, we will investigate, notify affected users when data is compromised, and take steps to remediate the issue.
Contact
Report security concerns: management@messi2026.com