Security at OpsFrame
Effective and last updated: September 25, 2026
Your business's financial data is sensitive. Here is how OpsFrame IQ protects it.
How we protect your data
- Encryption in transit: all connections use HTTPS.
- Separation between businesses: each business's data is isolated, and every request is checked on the server.
- Role-based access: owners decide who on their team can view or change data.
- Two-step verification: you can protect your account with an authenticator app. OpsFrame staff with administrative access must use it.
- Secure QuickBooks connection: you authorize the connection directly with Intuit, and access credentials are stored encrypted and never shown in the browser.
- Abuse protection: bot protection on sign-up and password reset, plus limits on sign-in attempts and other requests.
- Audit and security logging: administrative actions and security events are recorded.
- Backups: data is backed up by our hosting provider.
Reporting a security concern
If you believe you've found a security issue, email hello@opsframe.com. Please include enough detail for us to reproduce the issue, and give us reasonable time to fix it before sharing it publicly.
Subprocessors
These service providers process data on our behalf to deliver OpsFrame IQ.
| Provider | Purpose |
|---|---|
| Lovable (Lovable Cloud) | Application hosting, database, sign-in and transactional email |
| Cloudflare | Network delivery and bot protection (Turnstile) on sign-up and password reset |
| OpenAI | Plain-language explanations of already-calculated results, when you request one |
| Paddle.com | Merchant of Record: orders, subscriptions, payments, tax and invoicing |
| Intuit (QuickBooks Online) | Accounting data retrieval, only if you choose to connect QuickBooks |
Contact
OPSFRAME LLC, trading as OpsFrame
Email: hello@opsframe.com