Security

Is your team's data safe with Supera? Here's exactly how we protect it.

21 July 2026 · 7 min read

What's in this blog?

  • Why a small business should care about review-software security
  • How your data is encrypted — separately for every company
  • What "delete" really means at Supera (it's gone-gone)
  • No app, no passwords: fewer things to leak
  • What we can't see — and why that's on purpose
  • Your data has an off-site backup
  • "Built to SOC 2 and ISO 27001" — what that honestly means
  • The one promise: no single point of failure

When you run reviews, you're holding some of the most sensitive information a small business has: what a manager really thinks of someone, a probation record, a signed acknowledgment, sometimes a separation. If that leaks, it's not an inconvenience — it's someone's job and your legal exposure. So before you put any of that into a tool, you deserve a plain-English answer to one question: is my team's data safe here?

Here's exactly how Supera is built to keep it that way — no jargon.

Your data is encrypted — and separated, company by company

Every company on Supera gets its own encryption key. Your data is locked with your key; another company's data is locked with theirs. They're never mixed and never readable across the line. Underneath, we use the same envelope-encryption approach banks use — your key is itself wrapped by a master key kept in dedicated key-management hardware, not sitting in a file on a server somewhere. In plain terms: even in the very unlikely event someone reached the storage, what they'd find is scrambled, per-company, and useless without keys they can't get to.

When you delete, it's actually gone

A lot of software "deletes" your data by hiding it while keeping a copy forever. We don't. When you close an account, we destroy that company's encryption key — and without the key, the data is permanently unrecoverable. (We hold it for 30 days first, so an accidental cancellation is easy to undo; after that, it's irreversible.) You can also export everything you have at any time, including before deletion. Your data is yours to take and yours to erase.

No app, no passwords — fewer things to leak

Most breaches start with a stolen password or a sketchy app. Supera has neither to steal. Your team never downloads an app and never creates a password: they sign in with a one-tap link, a Google or Apple login, or a one-time code by text or WhatsApp. Fewer moving parts means a much smaller target.

What we can't see — on purpose

Some things are designed so that even we can't see them:

Security isn't only about keeping outsiders out — it's about limiting what anyone on the inside can see, too.

Your data has an off-site backup

Good security includes surviving a bad day. Supera keeps a nightly, encrypted backup with a separate provider, off our main platform, held in tamper-resistant storage. If our primary provider had an outage, your reviews and records aren't riding in a single basket. (We designed the backups so the copy itself is encrypted the same way your live data is.)

"Built to SOC 2 and ISO 27001" — the honest version

You'll see a lot of tools slap "SOC 2" on a homepage. Here's our honest position, in two parts. First: Supera runs on infrastructure that is itself independently SOC 2 and ISO 27001 certified — our providers, like Cloudflare, hold those audits. Second: Supera's own practices — the encryption, the access logging, the deletion policies — are built to the SOC 2 and ISO 27001 control frameworks, but Supera itself is not yet certified; that takes an independent audit we haven't completed. We say "built to," not "certified," and we're pursuing a formal SOC 2 report as we grow. We'd rather tell you exactly what we do than wave a badge we haven't earned. If a security questionnaire matters to your business, talk to us — we'd rather over-communicate than over-claim.

The one promise underneath all of it: no single point of failure

The thread running through everything above is a rule we hold ourselves to: no single point of failure, and never trade security for convenience. A key is protected so no one copy can unlock everything. A backup lives somewhere your main provider can't take down with it. Access is walled so no one person is either a lock-out or a leak. It's not one feature — it's how the whole thing is put together.

You shouldn't have to be a security expert to trust the tool that holds your team's records. That's our job.

If you want the deeper technical detail, our Security page lays it out — and you can always reach a human at [email protected].

Reviews you can trust with your team's records

Bilingual performance reviews, built to keep sensitive data safe. Available in the U.S., in English & Spanish.

Get early access →

This article is a plain-language summary of how Supera is built, not a contract or a security certification. The specifics are governed by our Privacy Policy, DPA, and Terms.