The privacy and security of our users is vital to our business, therefore we have used our best endeavors to ensure that your personal data remains at all times confidential, secure and highly protected. InEx Finance has incorporated the latest cutting-edge technologies available in the industry to secure your private information against unauthorized access, fraud, misuse or theft. We have integrated state-of-the-art financial security practices and protection safeguards in order to build a reliable and infallible personal money management system. We have made your privacy and security our primary concern so that you can enjoy a trouble-free online experience while managing and budgeting your personal finances with us.


Here is a description of the advanced security practices and techniques employed by InEx Finance:

1. Firewall Protection: InEx Finance runs on firewall protected servers to prevent any security breaches, hacker attacks, denial-of-service attacks (DoS attacks), etc. The firewall configuration restricts access to our web servers by filtering Internet traffic – whether the connection is inbound or outbound. Our firewall protection blocks any unauthorized access while permitting only legitimate communications to pass.

2. SSL Encryption: InEx Finance uses 256-bit high-grade encryption to ensure that all data passed between your browser and our server remains private and integral. The SSL (Secure Sockets Layer) encryption is designed to provide communication security over the Internet and prevent any third party from eavesdropping or tampering with your sensitive data. We use Comodo CA 256-bit SSL encryption to make your information unintelligible to all unauthorized parties. SSL is an industry standard in online security, so you can rest assured that your financial data is highly protected whenever you share or transmit any information to our server.

3. Physical Security: InEx Finance web servers are hosted in a secure data center with 24 hours a day, 7 days a week video surveillance and security guards. Access to server rooms is restricted to authorized personnel only and require multilevel identification, including, but not limited to, proof of identity and biometric hand scanners. On top of this, the hosting facility is equipped according to all applicable safety standards to ensure uninterrupted and error-free server functioning, such as climate control system, modern fire detection system, back-up diesel generators, etc.

4. Security Audits: InEx Finance security practices and procedures are regularly monitored by external security audit services. We conduct periodic security assessments to detect any vulnerabilities or security breaches in our software and hardware. We perform daily ports scanning, vulnerability testing, SQL injection testing, cross-site scripting (XSS) testing and many other highly effective controls in order to maintain the integrity and safety of your personal information. Moreover we regularly update our system to ensure compliance with the security requirements in this industry and deliver to all InEx Finance users the maximum level of trust and confidence.

5. Password Protection: we require an email address and password to grant you access to InEx Finance online system. We use cryptographically strong hashing algorithms while storing your hashed password in our data base and even our system administrators can't view your password since it's not stored as clear text. Moreover after your login credentials are entered incorrectly 10 times in a row, the system automatically blocks access to your InEx account and alerts you about the incident. Do not enable automatic login to your InEx account, especially if you are using a third-party computer. You are responsible for maintaining the confidentiality of your login details in accordance with our Privacy Policy and Terms & Conditions.

6. External Authentication: with our external authentication feature you can securely register or sign in to your InEx account via third-party APIs, without having to create and store another set of username and password. This highly secure mechanism enables you to access your InEx Finance account using your existing Google, Facebook, Yandex or Yahoo! login credentials. When you use the external authentication feature, even we don't have access to your password since the third-party API solely returns a unique session identifier to verify your identity.

7. Whitelist IPs: this advanced security feature allows you to set your own authentication criteria to access InEx Finance account. You can create your personal list of IP addresses or subnets by which the system will recognize you as the rightful user and grant successful access to your InEx Finance account. Any sign-in attempts originating from IP addresses not registered in your Whitelist IPs will be automatically rejected even though the supplied email and password are correct. This additional security level makes your financial information as impregnable as a fortress under all possible circumstances.

8. Session Management: we constantly keep track of InEx Finance users' activity to ensure that no irregularities or malfunctioning occur. After 30 minutes of inactivity the system automatically ends your session and logs you out of your InEx account (unless you have enabled the automatic login). You will be required to authenticate yourself once again if you want to resume service. This greatly reduces the risk of possible unauthorized access mainly when you access InEx Finance budgeting software from third-party computers or mobile phones.

9. No Bank Account/Credit Card Sync: our online software operates without requiring any private financial information from you that should be kept secure. Most important, InEx Finance lets you organize, control and manage your money without asking you to sync your personal bank account or credit card with your InEx account. You alone decide what portion of your financial resources shall be handled and budgeted through our online money management system.

10. Anonymous Account: we allow you to create a virtually anonymous account. We require only a valid email address, password and a name (under which you want to be identified within InEx community). We don't require or store such sensitive information as your address, date of birth, SSN, bank account numbers or credit card data. Our system doesn't automatically link your private bank and credit accounts to your InEx account, thus you can rest assured that no outside party will ever get access to or compromise your personal financial data.

11. View-only Service: our software has namely been designed as a view-only personal finance management service. It is merely an aggregated accounting reflection of your financial situation based on the actual data you decide to log into your InEx account. InEx Finance allows you to manage and budget your personal finances without being able to physically remove funds to any external accounts. InEx Finance doesn't deal with money, it's basically a personal accounting service that doesn't involve physical money.


Tags security
Updated at March 02, 2013 13:25