Security

Last updated: July 16, 2026

These security practices apply to Clara at clara.quinsy.app and the Clara monday.com automation app. They do not govern other Quinsy websites.

Transport and hosting

Clara is served over HTTPS. Our website and API are hosted on Vercel infrastructure. Traffic between your browser and our endpoints is encrypted in transit using TLS.

Authentication and access

Clara integrates with monday.com through monday's app and automation platform. Automation runs are initiated by monday.com on your behalf when your configured triggers fire. API access uses short-lived tokens provided by monday during each run. We do not store your monday.com password.

Data handling

Cell values are processed in real time during each automation run to apply your selected formatter. We do not persistently store board cell content in our application database. See our Privacy Policy for details on what we process and retain.

Rate limits and abuse prevention

We apply rate limits and technical controls to protect the service from abuse, overload, and unauthorised use. Plan limits on transformations are enforced as described in our Terms of Use.

Logging

We maintain server logs for operations, security monitoring, and troubleshooting. Logs may contain request metadata such as timestamps, IP addresses, and error codes. They do not include a durable copy of your board cell content.

Incident reporting

If you believe you have discovered a security vulnerability or incident affecting Clara, contact us at privacy@quinsy.app. Please include enough detail for us to investigate and respond.

Contact

Quinsy UG (haftungsbeschränkt)
Schönhausenstraße 41, 28355 Bremen, Germany
privacy@quinsy.app · contact@quinsy.app · support@quinsy.app