banana.cards

Security

Your safety… our priority.

At Banana Cards, your data is protected by design. From digital profiles and saved contacts to files, business information, and AI-powered tools — we apply secure data handling practices to keep your information safe.

256
AES bit encryption
0
Data sold, ever
24/7
Monitoring

Built with protection in mind

Eight layers of peace of mind.

Encryption, controlled access, privacy-first AI, and a strict no-sale stance — woven into every part of the platform.

PostgreSQL infra

Secure, battle-tested database foundation.

AES-256 at rest

Your data is encrypted while stored.

TLS in transit

All traffic encrypted end-to-end.

Controlled access

Row-level security and least privilege.

Role-based perms

Granular team and admin controls.

Privacy-first AI

Enterprise-grade Vertex AI processing.

Not used for training

Customer data never trains AI models.

Continuous monitoring

Active checks for misuse and abuse.

Encrypted everywhere

AES-256 at rest, TLS in transit. Your data is protected whether it's stored or moving between systems.

Privacy-first AI

We use enterprise-grade Vertex AI. Customer data is never used to train or fine-tune AI/ML models.

No data sale. Period.

We don't sell user data, contacts, profiles, files, or AI-processed information to anyone. Ever.

At a glance

Everything we ship to keep you safe.

A short, plain-language summary of the controls, policies, and practices that protect your account and your data on Banana Cards.

  • PostgreSQL-based secure database infrastructure
  • AES-256 encryption for data at rest
  • TLS encryption for data in transit
  • Controlled account access
  • Role-based team permissions
  • Privacy-first AI processing
  • Customer data is not used to train or fine-tune AI/ML models
  • No sale of user or contact data
  • Responsible handling of contacts, profiles, files, and business information
  • Ongoing monitoring to help prevent misuse or suspicious activity

The fine print

The details, made readable.

Our platform and software services are operated globally by Six Studio Creative FZCO. In Vietnam, physical card services and local operations are managed by Banana Cards Vietnam.

Section 01

Database Security

Banana Cards uses Supabase for database management and backend data handling. Supabase is built on PostgreSQL and supports security controls such as Row Level Security, which allows access rules to be applied directly at database level so users can only access data they are authorized to access.

Supabase encrypts customer data at rest using AES-256 and in transit using TLS. Where applicable, Banana Cards layers additional database-level access controls, authentication rules, role-based permissions, and secure backend processes to protect user data against unauthorized access.

Section 02

AI Processing

Banana Cards uses Google Vertex AI to power selected AI features, including contact enrichment, message drafting, profile assistance, business summaries, smart suggestions, and workflow support.

Google's Vertex AI service terms state that Google will not use customer data to train or fine-tune AI/ML models without the customer's prior permission or instruction.

When Banana Cards uses Vertex AI for enterprise-grade AI processing, user data submitted for AI assistance is processed to provide the requested feature — and is not used by Google to train its foundation models unless explicitly permitted.

Section 03

No Data Sale Policy

Banana Cards has a strict No Data Sale Policy. We do not sell user data, contact data, customer records, business profiles, uploaded documents, communication history, or AI-processed information to advertisers, data brokers, or third parties.

User data is used only to provide, secure, improve, and support the Banana Cards platform and related services, subject to our Terms of Service, Privacy Policy, and applicable laws.

Section 04

Access Control

Access to user data is limited to authorized systems, service providers, and personnel where necessary to operate, maintain, secure, or support the platform.

Banana Cards may apply different levels of access depending on the user account type, team permissions, admin settings, and operational requirements.

Users are responsible for maintaining the security of their own accounts, including login credentials, connected email accounts, uploaded contacts, team member access, and shared profile links.

Section 05

Data Handling & User Responsibility

Users are responsible for ensuring that any contact details, documents, business cards, files, or third-party information uploaded to Banana Cards are collected and processed lawfully.

Users should only upload or process personal data where they have consent, a legitimate business relationship, contractual basis, or another lawful basis under applicable privacy laws.

Banana Cards must not be used to store, process, or share illegally obtained data, scraped personal data, spam lists, purchased contact databases, or unauthorized private information.

Section 06

Security Limitations

While Banana Cards applies reasonable technical, organizational, and operational safeguards, no online platform can guarantee absolute security.

Users should avoid uploading unnecessary sensitive information and should keep account access limited to trusted team members.

Banana Cards may suspend, restrict, or remove access where activity appears suspicious, abusive, unlawful, or in breach of our policies.

Connect with confidence.

Manage your business relationships knowing your data is handled securely, responsibly, and with privacy at its core.