Skip to main content

How Legl protects your data

Understand how Legl protects your data with encryption, UK GDPR compliance, secure AWS hosting, and regular security audits.

Ula Moyse-White avatar
Written by Ula Moyse-White
Updated this week

Overview

At Legl, keeping your data protected is our top priority. We have implemented a series of measures to help ensure that your information and personal data stay secure.

This article explains the technical, organisational, and compliance safeguards Legl uses to protect data across the platform.


What this covers

This article covers the following areas of data protection at Legl:

  • Data encryption

  • Data storage and infrastructure security

  • Compliance with UK data protection regulations

  • Security certifications and registrations

  • Security audits and monitoring

  • Use of sub-processors

  • Where to find further information


How this works at a high level

Encryption

  • Data at rest is encrypted using AES-256 encryption.

  • Data in transit is encrypted using TLS 1.2+ (HTTPS).

Storage and security

  • Legl hosts its data on AWS data centres located in Dublin.

  • AWS provides robust security and resilience as a cloud data storage provider.

  • Legl uses Cloudflare, which provides:

    • Protection from Distributed Denial of Service (DDoS) attacks

    • An intelligent web application firewall

    • Bot detection and analytics to monitor and proactively assess cyber security events

Compliance

  • Legl is subject to and fully compliant with the UK General Data Protection Regulation (UK GDPR).

  • Legl is compliant with the Data Protection Act 2018.

Certifications and registrations

  • ISO27001 certified
    ISO/IEC 27001 certificate number: 0174467

  • Cyber Essentials Plus certified
    Legl’s digital certificate is available.

  • Registered with the Information Commissioner’s Office (ICO)
    Registration number: ZA115706

Security audits

  • Legl has comprehensive auditing and monitoring mechanisms in place to detect and respond to any security incidents or anomalies.

  • Legl conducts regular security audits and testing to identify and address vulnerabilities across the platform.

  • This includes:

    • Annual penetration testing

    • Vulnerability scanning

    • Code reviews

Legl’s Privacy Policy

For further information on how we handle personal data, please refer to our Privacy Policy.

ℹ️ Further guidance

To find out more information on Security and Privacy, please see our Trust Centre: Legl | Trust Centre


Key things to be aware of

Important:

  • Legl proactively identifies and addresses security risks through regular testing and monitoring.

  • Security controls and compliance measures are continuously maintained across the platform.

Did this answer your question?