Security Overview
MOVE LANGUAGE Security Overview
MOVE LANGUAGE takes a risk-based approach to security, privacy, and operational resilience. The service is built on modern managed cloud infrastructure and follows commonly accepted security practices for SaaS applications, including controlled access, review of critical systems, secure development practices, monitoring, backups, and incident response procedures.
Data is protected with encryption in transit and encryption at rest through managed infrastructure and storage services. Security practices are reviewed as the product, customer requirements, and regulatory expectations evolve.
Data & Privacy
MOVE LANGUAGE processes personal data needed to provide the service, such as account information, organization and user administration data, learning activity, conversations, pronunciation and voice-related data when voice features are used, billing-related information, and support or operational records.
Customer application data is stored in the European Union region. Some data may be processed by approved subprocessors where needed to provide core service functionality, including cloud hosting, authentication, payment processing, analytics, support, and AI-enabled language features. Current subprocessor information is published in the Privacy Policy.
MOVE LANGUAGE processes personal data in accordance with the GDPR and applies appropriate technical and organizational measures to protect personal data. Users and customers can request access, correction, export, or deletion of personal data in accordance with applicable law and contractual terms.
Infrastructure & Reliability
MOVE LANGUAGE uses established cloud and managed service providers for hosting, storage, network delivery, application services, and security-related infrastructure. These providers are selected with attention to reliability, data protection, and recognized security and compliance practices.
The platform is designed for service continuity using monitoring, backups, controlled deployment processes, and recovery procedures. Backup and restoration processes are reviewed and tested periodically. The system is also designed to reduce single points of failure where appropriate for the service.
For security reasons, MOVE LANGUAGE does not publish infrastructure diagrams, internal URLs, IP addresses, ports, or detailed configuration information in public documentation.
Access Control & Authentication
Access to customer data and production systems is restricted using role-based access control and the principle of least privilege. Production access is limited to authorized personnel with a business need.
Internal systems require strong authentication, including multi-factor authentication where available and appropriate. Administrative access is controlled, reviewed, and logged through the relevant systems. Customer administrators are responsible for managing access for users within their own organization.
Incident Response
MOVE LANGUAGE maintains a process for identifying, assessing, responding to, and recovering from security incidents. This includes internal escalation, investigation, containment, remediation, and communication procedures.
If MOVE LANGUAGE becomes aware of a security incident that materially affects customer data or service security, affected customers will be notified without undue delay and in accordance with applicable legal and contractual obligations.
Compliance & Accessibility
MOVE LANGUAGE is designed to support GDPR-compliant data processing, with customer application data stored in the European Union region and subprocessors reviewed for their role in providing the service. Data protection practices are documented in the Privacy Policy and reflected in contractual terms where applicable.
Accessibility is implemented in line with WCAG 2.x Level AA. A VPAT-based Accessibility Conformance Report is published and maintained as part of the Trust Center documentation.
Documents & Requests
This Trust Center and the Privacy Policy provide the primary public documentation for MOVE LANGUAGE security, privacy, subprocessors, and accessibility. For enterprise procurement processes, MOVE LANGUAGE may provide additional information where relevant and appropriate to the customer relationship.
MOVE LANGUAGE does not provide sensitive technical details, infrastructure diagrams, internal URLs, IP addresses, security configurations, vulnerability details, or internal tool information through public trust-center documentation.
Contact
For security-related inquiries, contact MOVE LANGUAGE through your usual company contact or email support@movelanguage.com.
