Security

Your members trust you with their details. We take that seriously.

Here is how ChurchBright protects your church’s data — in plain language.

Encryption

All traffic is served over HTTPS. Payment-gateway secret keys and messaging credentials are encrypted before they are stored.

Two-factor sign-in

Team members can protect their accounts with an authenticator app. We recommend it for every owner, administrator and finance officer.

Role-based access

Ten built-in roles and custom roles decide who can view, edit, export or delete. Branch admins only see their own branch.

Separation between churches

Every record belongs to one church, and every database query is checked automatically to make sure it is limited to the church making the request.

Activity log

Sensitive actions — exports, deletions, role changes, settings — are recorded with who did them and when.

Abuse protection

Sign-in, sign-up and public forms are rate-limited, forms are protected against cross-site request forgery, and spam traps catch bots.

Safer uploads

Uploaded images are re-encoded, which strips hidden data such as GPS location from photos.

Your data, your control

Owners can export all church data as CSV at any time. We never sell personal data.

Payments

Card and bank details are entered on your payment provider’s secure checkout (Paystack, Flutterwave, Stripe or PayPal). ChurchBright never sees or stores full card numbers, and gifts are paid by the provider straight into your church’s account.

Good practice for your team

  • Give every person their own login and the smallest role they need.
  • Turn on two-factor sign-in for anyone who can see giving or export data.
  • Remove access as soon as someone steps down.
  • Never share payment-gateway secret keys by email or chat.

Reporting a vulnerability

If you believe you have found a security problem, please tell us privately at [security email] so we can fix it before it is shared. We appreciate responsible disclosure.

Privacy policy · Data processing agreement · How to turn on two-factor sign-in