Reap is built on a foundation of bank-grade security and compliance. This article explains the standards and safeguards in place to protect your data, your account, and every payment you make.
Overview
Security is not an afterthought at Reap - it is built into every layer of the platform. From AES-256 encryption and ISO 27001-certified infrastructure, to PCI DSS certification and regular independent penetration testing, Reap meets the same standards required of major banks and financial institutions.
Jump to
- Account and Data Security
- Secure Infrastructure
- Keeping Your Payments Safe
- Frequently Asked Questions
- Contact our Support Team
Account and Data Security
Your data is protected at every stage, whether it is moving between systems or stored at rest.
Encryption in transit
Reap uses TLS (Transport Layer Security) to encrypt all data as it travels between your device and our systems - the same protocol used by leading financial institutions and banks worldwide.
Encryption at rest
Data stored on Reap's platform is protected using AES-256 encryption, the global standard adopted by banks and government agencies.
Your credentials stay on your device
Your login credentials are stored only on your device. They are never stored on Reap's servers or in the cloud.
2-step verification for payments
Every payment requires 2-step verification (2FA) to confirm your identity and prevent unauthorised transactions.
Secure Infrastructure
ISO 27001-certified data centres
Reap's servers are hosted in data centres certified to ISO 27001 - the international standard for information security management. Certification means our infrastructure undergoes independent audits against rigorous security controls.
Built on Amazon Web Services (AWS)
We run our platform on AWS, which provides enterprise-grade protection against web-based attacks, DDoS threats, and infrastructure-level abuse.
Automatic incident response
Our systems are designed with automatic failover and incident response built in. Security events are handled without disrupting your access or operations.
Keeping Your Payments Safe
PCI DSS certified
Reap is certified under the Payment Card Industry Data Security Standard (PCI DSS), the global security standard governing how organisations accept, store, process, and transmit cardholder data. This certification is a requirement for all entities handling card payments, including banks and card networks.
Card data is never stored or passed through Reap's servers
Reap does not store full credit card numbers, nor do card details pass through Reap's own infrastructure. All card transactions are processed through a dedicated PCI-certified payment gateway.
Multiple compliance checks on every payment
Every payment processed through Reap passes through multiple layers of security and compliance checks before reaching your recipient.
Frequently Asked Questions
Is it safe to connect my bank account to Reap?
Yes. When you connect a bank account, Reap uses bank-grade encryption and requests only the access level required for the task. Your banking credentials are never stored on Reap's servers. See the related article: Is it secure to connect my bank account with Reap?
What encryption does Reap use?
Reap uses TLS for data in transit and AES-256 for data at rest. Both are the same encryption standards used by major banks and government agencies worldwide.
Has Reap been independently tested for security?
Yes. Reap system has passed multiple security penetration tests identify and address security vulnerabilities.
Is Reap PCI compliant?
Yes. Reap holds PCI DSS certification, which means we meet the global security standard for handling card payment data.
What happens if there is a security incident?
Reap's infrastructure is built with automatic incident response. Our systems detect and respond to security events without requiring manual intervention, minimising any impact to your account or payments.
Contact our Support Team
If you have questions or need assistance, contact our support team via the Live Chat in the Reap Dashboard (bottom right corner) or email us at hello@reap.global
For more information, visit Know who to talk to at Reap.