Start tracking today

2.65M UK landlords · most still on spreadsheets

Start free trial
AES-256 GDPR 5-min setup GOV.UK
Trust & Security

Your landlord and tenant data, properly protected

LetCompliance holds compliance records, tenant details and financial data — so security is not a feature, it is the foundation. Here is exactly how we protect it.

Quick answer

How does LetCompliance keep my data safe?

Your data is encrypted in transit (TLS) and at rest (AES-256), hosted in UK and EU data centres, and isolated per account with Postgres Row-Level Security. Payments run through Stripe (PCI DSS Level 1) — we never store card details. We act in line with UK GDPR, keep a tamper-evident audit trail, and you can export or delete your data at any time.

How we protect your data

Encryption everywhere

Your data is encrypted in transit with TLS and at rest with AES-256. Nothing moves or sits in the clear.

UK & EU hosting

Application and database infrastructure runs in UK and EU data centres, keeping your data within UK/EU jurisdiction.

Account-level isolation

Every account and agency workspace is isolated at the database layer with Postgres Row-Level Security — your records are never visible to another account.

Stripe-secured payments

Billing runs through Stripe (PCI DSS Level 1). We never see or store your card details.

Tamper-evident audit trail

Compliance-critical actions are written to an append-only audit log, so you can produce tribunal-grade evidence of what happened and when.

Automated backups

Your data is backed up automatically so it can be recovered if the unexpected happens.

Least-privilege access

Passwordless tenant and contractor links are scoped to a single tenancy or job by a unique token, and can be revoked at any time.

UK GDPR aligned

We handle personal data in line with the UK GDPR and the Data Protection Act 2018. You can request access, export or deletion of your data at any time.

Our sub-processors

We use a small number of vetted, industry-standard providers to run the service. Each is contractually bound to protect your data.

ProviderPurposeRegion
SupabaseDatabase, authentication & encrypted file storageUK / EU
VercelApplication hosting & content deliveryUK / EU
StripeSubscription billing & payments (PCI DSS Level 1)UK / EU
ResendTransactional & reminder email deliveryEU / US
BrevoSMS reminders (higher tiers)EU

Your data, your control

It is your data. Under UK GDPR you can ask us to provide a copy, correct it, export it, or delete it — and we will. Cancel any time and your data can be exported or erased on request. We never sell your data or your tenants’ data to anyone.

Read our Privacy Policy

Security FAQ

Where is my data stored?

Your application and database infrastructure runs in UK and EU data centres, keeping your data within UK/EU jurisdiction. Data is encrypted at rest with AES-256 and in transit with TLS.

Can other landlords or agencies see my data?

No. Every account and agency workspace is isolated at the database level using Postgres Row-Level Security. Queries can only ever return rows that belong to your own account or workspace.

Do you store my card details?

No. All billing is handled by Stripe, a PCI DSS Level 1 payment processor. Your card details are entered directly with Stripe and never touch or stay on our servers.

How do you handle UK GDPR and my tenants’ personal data?

We process personal data in line with the UK GDPR and the Data Protection Act 2018, as a data processor acting on your instructions. You can request access to, export of, or deletion of your data at any time by contacting us.

How do I report a security concern?

Email letcomplianceuk@gmail.com with the details. We take responsible disclosure seriously and will acknowledge and investigate every report.

Report a security concern

Found something? We take responsible disclosure seriously. Email letcomplianceuk@gmail.com and we will acknowledge and investigate every report.

LetCompliance — UK rental compliance, built for UK law and UK/EU data residency.