Last updated: July 3, 2026
Sequenzy is built to handle customer and subscriber data responsibly. This page describes the technical and organizational measures we use to protect that data. It is a plain-language companion to our Data Processing Agreement, which is the governing legal document for how we process personal data on your behalf.
Data in transit between your browser, our application, and our API is encrypted using TLS.
Data at rest, including subscriber records and campaign content, is stored using encryption at rest provided by our database and storage providers.
Sequenzy runs on established cloud infrastructure providers rather than self-managed data centers, which lets us rely on their physical security, network security, and compliance certifications for the underlying hardware layer.
Production environments are segregated from development and staging environments, and access to production infrastructure is restricted.
Sequenzy is designed to support GDPR-compliant processing for customers operating in or serving the EU and UK. See our Data Processing Agreement for the contractual terms governing GDPR, UK GDPR, and international data transfers, including Standard Contractual Clauses where applicable.
The full terms governing how we process personal data on your behalf, including data subject rights, breach notification, and audit rights, are set out in our Data Processing Agreement.
We use a limited set of sub-processors to provide the service, covering infrastructure such as database hosting, email sending, and payment processing, plus a smaller set of feature-dependent sub-processors used only when a customer enables the corresponding feature. The authoritative, current list is maintained in Annex 3 of our Data Processing Agreement.
Sequenzy includes AI features such as email and sequence generation, subject line generation, and image generation.
If you believe you have found a security vulnerability in Sequenzy, please report it to security@sequenzy.com. Please include enough detail to reproduce the issue and avoid accessing or modifying data that is not your own.
This page should be read together with our Data Processing Agreement, Terms of Service, and Privacy Policy.