Security & trust
Last updated: August 2026
GETSSENT protects some of the most sensitive information there is: your final messages and documents for your loved ones. Here is, in full transparency, how we protect your data β and what we do not do (we'd rather be honest than promise the impossible).
π Encryption
Encryption at rest (AES-256-GCM)
Your messages and files are encrypted on our servers with AES-256-GCM, a recognized standard. The master key is an infrastructure secret, never stored in the database. Key derivation uses HKDF-SHA256.
Encryption in transit (HTTPS/TLS)
All communications between the app, our servers and your recipients use encrypted connections (HTTPS/TLS).
Hashed passwords (PBKDF2)
Your password is never stored in plain text: it is hashed with PBKDF2-HMAC-SHA256 (100,000 iterations, random per-user salt). Even we cannot read it.
Transparency: not "end-to-end"
We say it plainly: GETSSENT is not end-to-end encrypted. To be able to send your messages in your absence, the service must be able to decrypt them at send time. In return, no tool lets us read your content: decryption only happens automatically at trigger time, it is recorded in a tamper-proof log you can verify yourself, and we never read, sell or exploit your content.
π Integrity & transparency
Tamper-proof audit log
Every security action (login, check-in, dispatch, deletion, admin accessβ¦) is timestamped and sealed with cryptographic hash-chaining: each entry's hash depends on the previous one. Any attempt to modify or erase the history breaks the chain and becomes immediately detectable. This log contains none of your message content, only technical identifiers.
Access log β verify it yourself
Don't take our word for it: in the app (Settings β Access log) you can see every time your vault content was decrypted β only at automatic trigger time. No tool lets the operator read your content, and any read would appear here. You only see YOUR own events: never another user's data, IP address or content.
π‘οΈ Access protection
Email address verification
At sign-up, a 6-digit code confirms you actually own the address. Such a sensitive tool must not be created with a wrong email.
Anti-bot protection (CAPTCHA)
Authentication pages are protected by a CAPTCHA (Cloudflare Turnstile) against bots and mass creation of fake accounts.
Brute-force protection
Repeated login attempts are rate-limited (per account and per IP address) and temporarily blocked, to counter trial-and-error attacks.
Two-factor authentication (2FA)
You can enable app-based two-factor authentication (Google Authenticator, Authyβ¦) with 10 recovery codes. It is required at login and for any sensitive operation (email change, password change, account deletion). Email recovery is available if you lose access, except during a security hold.
Security hold (48h)
After a sensitive operation (email/password change, 2FA recovery), a 48-hour hold blocks risky actions (export, backup, simulation, password change). If someone accessed your account, they couldn't act right away β and you're notified.
Double-confirmed email change
Changing your email requires a code sent to BOTH the old AND the new address, plus your password (and your 2FA code if enabled). A revocation link is also sent to the old address.
Local lock (biometrics / PIN)
On your device, you can require Face ID / fingerprint or a 5-digit PIN to open the app, with automatic re-lock after inactivity.
Double-confirmation deletion
Deleting your account requires typing the word "DELETE" AND your password (and your 2FA code if two-factor authentication is enabled) β to prevent accidental or malicious deletion. Deletion is immediate and permanent.
β±οΈ Against accidental triggers
Escalating reminders & grace period
Before any dispatch, you receive a first reminder then a last reminder. Nothing is sent until the grace period you configured has elapsed.
Two-person rule (optional)
At the deadline, GETSSENT can first ask a trusted contact to confirm your absence. Without their confirmation within the set delay, the dispatch happens automatically.
Holiday mode
Suspend monitoring during planned absences, with automatic resume on the date you choose. No dispatch can occur during the pause.
Anti-replay protection
Right before a dispatch, the service re-checks your last check-in: if you confirmed your presence at the last minute, the dispatch is cancelled.
π¨ Delivery reliability
Dual email provider
GETSSENT uses a primary sending provider and automatically switches to an independent second provider on failure β so a final message is never lost because of a single provider.
Automatic retry queue
On a delivery failure, the attempt is automatically retried several times (with progressive delay). You're notified if a recipient could not be reached.
Secure code-verified links
By default, the email only contains a neutral notification + a protected link. To access the documents, the recipient must enter their email address THEN a 6-digit code sent to them (valid 15 min, limited attempts). The confidential content therefore never travels through email.
Optional Telegram channel
You can receive your reminders on Telegram and, optionally, have your recipients receive a secure notification via Telegram β in addition to email, for extra reliability.
Proof it works
Pro accounts receive a weekly health email and an automatic monthly backup of their data. All accounts have a simulation (Dry Run) button to test at any time without sending anything to their recipients.
π© Moderation & illegal content
Reporting & takedown (DSA)
Anyone can report illegal content via the "Report content" page. We act without undue delay: link blocking, content removal and, if necessary, suspension of the concerned account, with a statement of reasons β in line with the EU Digital Services Act (DSA).
β
Your best practices
- Choose a strong, unique password (at least 8 characters, ideally more).
- Enable the local lock (biometrics / PIN) on your phone.
- Test regularly with the simulation (Dry Run) and check that you receive the health email.
- Keep your recipients' addresses up to date and let your trusted contacts know their role.
- Set a realistic grace period and use holiday mode before a planned absence.
π What we don't do
We never sell your data, do not use it for advertising, and do not read your content. GETSSENT does not replace any official legal, medical or safety arrangement.
A question about security? Email us: contact@getssentinel.com.
Contact : contact@getssentinel.com
Use cases Β· Home