Flino
Security

Your data is in safe hands with Flino.

Flino processes sensitive sales and customer data. That's why security isn't an afterthought — it's a core part of how we build our product. We undergo regular reviews by independent auditors and follow current industry standards.

ESOF Shield Verified & Secured – CASA certified

Independently audited: CASA

Flino has successfully passed the CASA audit (Cloud Application Security Assessment) of the App Defense Alliance. The assessment was carried out by TAC Security, an independent, accredited security auditor.

The CASA process includes a penetration test as well as a review against the OWASP Application Security Verification Standard (ASVS) — a recognized standard for web application security.

In progress

ISO 27001

We are currently preparing for ISO 27001 certification — the internationally recognized standard for information security management systems (ISMS). This anchors security permanently in our processes and operations.

Status: in progress · As of: June 2026

How we protect your data

Encryption

All data is encrypted in transit (TLS) and at rest.

Data stored in the EU

All customer data is stored and processed exclusively on EU servers.

Regular pentests

Flino is regularly tested by independent auditors through penetration tests.

Minimal data access

The Gmail connection uses official OAuth. We don't store email content beyond what's necessary.

Secure payments

Payments are processed by Stripe. Full card details are never stored on our servers.

GDPR-compliant

A data processing agreement (DPA) is available. See DPA and Privacy.

Report a vulnerability

Found a potential security issue? We investigate every report. Contact us confidentially at [email protected].