Security & Trust Framework

Transmission Integrity

SSL Secured Platform

All communications between users and system infrastructure are encrypted using modern Transport Layer Security (TLS) standards.

HTTPS Enforcement

Transport Layer Security

  • HTTPS enforced across all public and access-restricted routes without exception.
  • TLS 1.2 and TLS 1.3 encryption protocols are supported; older versions are not permitted.
  • Certificates are issued by globally trusted Certificate Authorities and maintained through automated lifecycle management.
  • HTTP Strict Transport Security (HSTS) is enabled to prevent protocol downgrade attacks.
  • All HTTP requests are redirected to HTTPS at the infrastructure level before reaching application logic.

Secure Transaction Flow

Payment Transmission Handling

  • Donation sessions are redirected to a hosted payment checkout environment operated by PLS LLC USA.
  • No raw payment credentials are processed by, transmitted through, or stored within this platform.
  • API communication between platform services and external processors is conducted over encrypted channels.
  • Server-to-server communication involving sensitive data is authenticated and integrity-verified.
  • Checkout sessions are bound to a specific donation record and invalidated upon completion or cancellation.

"The platform maintains encrypted transmission protocols to ensure confidentiality and integrity of all data exchanges between users and platform infrastructure."