Skip to main content
Security and data protection

Your data, protected at every step.

Rentari handles rent, leases, screening, and identity for landlords and property managers. Protecting that information is the product, not an afterthought. Here is exactly how it stays safe, in plain language: encrypted in transit and at rest, separated by role, written to an audit trail, and never sold or used to train AI.

AES-256Encrypted at rest
TLSEncrypted in transit
ZeroCard numbers stored
AuditedEvery sensitive action
SSN encrypted at rest Card sent straight to Stripe Action written to the audit log
Encryption

Encrypted in transit, encrypted at rest.

Two layers, not one. Every request travels over HTTPS with a strict transport policy, and your data sits encrypted at rest on Google Cloud. The most sensitive fields go further: SSNs, dates of birth, tax IDs, and full screening reports are encrypted again with a separate application key before they ever reach the database.

HTTPS on every request, with HSTS enforced
A separate key over SSN, DOB, tax ID, and reports
Files kept in a private vault, never made public
Sealed at rest vault
Social Security number412-55-8137•••-••-••••
Date of birth06 / 14 / 1991••/••/••••
Screening reportfull reportencrypted
Tax ID (W-9)87-1234567encrypted
Payments

Card details never touch our servers.

We never hold your card data. Card and bank details are tokenized in the browser by Stripe and routed straight to your own connected Stripe account. Rentari never sees, logs, or stores a card number, and every payment carries an idempotency key so a retry can never double charge.

Tokenized by Stripe in the browser, not on our servers
Money lands in your own connected Stripe account
Idempotency keys stop a retry from double charging
Where a card payment goes Stripe
Your tenant's cardentered in the browser
tokenized by Stripe
Stripehandles the card data secured
payout
Your connected accountyou hold the funds
Rentari servers never see or store the card number
Access control

Every request is gated by role.

Least privilege, by default. Landlords, managers, tenants, and vendors each see only what their role allows. A team member is always scoped to the portfolio owner who invited them, tenants and vendors are blocked from landlord finance and document endpoints, and a logged-out or deleted account loses access right away.

Role checks on every API and page route
Managers and co-owners scoped to one portfolio
Refresh tokens can never act as a full session
Who can do what by role
Finances
Leases
Upkeep
Landlord
Manager
Tenant
Vendor
Responsible AI

Our AI answers from your data, or not at all.

It would rather say it does not know. Luna for tenants and Mozart for landlords are bound by grounding rules. If a fact is not in your records, the AI says so and routes to a human instead of inventing an answer. It never reports a balance it cannot see, never claims an action was taken, and never reveals its own instructions. Your data is not used to train any model.

Abstains and escalates when a fact is not on file
Proposes every action for your one-click approval
Your data is never used as training data
Luna, asked a fact it does not hold grounded
What is the gate code for my building?
I do not have that on file, so I will not guess. I have sent your question to your property manager and will let you know as soon as they reply.
Routed to a human, nothing invented
Listing integrity

Verified identity and proven ownership before a listing goes live.

A Verified badge has to be earned. A property cannot publish to the marketplace until the account owner passes a government-ID check through Stripe Identity and the property's ownership is confirmed, either against public records or with documents our team reviews. That is what a Verified badge means: a real, authorized owner.

Government-ID check through Stripe Identity
Ownership matched to records or reviewed documents
Publishing is hard-blocked until both pass
Before a listing publishes gate
Identity verifiedgovernment ID, via Stripe Identity
Ownership confirmedpublic records or reviewed documents
Listing is live Verified
Accountability

Every sensitive action is on the record.

If it happened, it is on the record. Sign-ins, payments, refunds, lease changes, screening, and consent are written to an append-only audit log that captures who, what, when, and from where. Admin login-as-anyone has been removed entirely, and you can export your data or request deletion with a recovery grace window at any time.

Append-only log of money and sensitive actions
Admin login-as-anyone has been removed
Export your data, or delete with a grace window
Audit trail append-only
lease.signedyou · 2:14 PM
payment.refundedyou · 1:02 PM
auth.login.failedunknown · 12:48 PM
consent.capturedapplicant · 11:30 AM
The data journey

How your most sensitive data is handled, step by step

Screening identity (an SSN and a date of birth) is the most sensitive thing we touch. Here is the full path it takes, start to finish.

1

Collected on our own page

We gather the SSN, date of birth, and consent on a Rentari page reached through a signed, time-limited link, never on a third-party site.

2

Sent over an encrypted connection

It travels over HTTPS with a strict transport policy, so it is encrypted the entire way to our servers.

3

Encrypted with a separate key

It is stored encrypted at rest behind a dedicated application key, kept apart from the rest of the database.

4

Used only to run the check

It is sent to an FCRA-accredited screening agency to run the report, and is used for nothing else.

5

The landlord sees the result only

Your landlord receives a pass or fail outcome. They never see your Social Security number.

6

Written to the audit trail

Consent is recorded with the signed name, the exact time, the source IP, and the disclosure version shown, for FCRA accountability.

Live status

Security status, checked in real time

This card reads our live status endpoint when the page loads, so it reflects the current posture, not a static screenshot.

Live security status
checking...
Our commitments

What we do, and what we promise

The honest version. Some of this is enforced in code today, and some is a commitment about how we will act.

Incident response

If we ever confirm unauthorized access, we revoke and rotate the affected credentials, notify the accounts involved within 72 hours of confirmation, and publish a written summary of what happened and what we changed.

Compliance, inherited and in progress

We run on Google Cloud and Stripe, which are independently certified (SOC 1/2/3, ISO 27001, PCI-DSS Level 1). Our own SOC 2 Type II is in progress. Background and credit checks run through an FCRA-accredited agency.

Procurement and questionnaires

Need a vendor questionnaire (CAIQ, SIG Lite, or your own)? Email [email protected] and we will respond within 5 business days. The full subprocessor list lives on our Trust Center.

Responsible disclosure

Found a vulnerability? Tell us.

We welcome reports from security researchers. Submit below and you get an instant AI-proposed severity before it routes to our team, or email [email protected] directly.

FAQ

Security questions, answered

Where is my data stored?
All landlord and tenant data is stored in encrypted databases hosted on Google Cloud Platform in US data centers, reached only over a private connection, never the public internet.
Who at Rentari.ai can access my account data?
Only on-call engineers with a documented support reason, and only the minimum data needed to resolve it. The ability for an admin to log in as another user has been removed, and access is recorded in an audit trail you can request a copy of.
What encryption do you use?
HTTPS in transit. Encrypted at rest on Google Cloud. Sensitive fields like your SSN, date of birth, and screening report are encrypted again at the application layer with a separate key.
Do you use my data to train AI?
No. Your data is not used to train any AI model. Our assistants only read your own records to answer your questions, and they abstain rather than guess when a fact is not on file.
How do I report a vulnerability?
Use the disclosure form on this page or email [email protected] with details. We acknowledge new reports within 2 business days.

Security you can check, not just take on faith.

See the live posture, browse our subprocessors and compliance posture, or read exactly how we handle your data.

Questions about security or procurement? Email [email protected].