In this article, you'll learn:
TLDR: we keep your data safe by not even having it. In the words of Mr. Miyagi, “The best block is no be there.”
Key practices we use to keep your data safe
1. Mozilla’s lean data practices
We employ Mozilla’s lean data practices and minimize the amount of things we even need to keep safe. Collecting and storing data is not free, and protecting it is not simple.
Since we have no desire to directly profit from your data, we have every incentive to keep it off our servers. We keep only what we 100% must have in order to provide you with our services (like finding all of your accounts), and remove it as soon as possible.
2. Federated Storage
Second, we utilize local and/or federated storage wherever possible: basically, whenever we do need to collect your data, we aim for that data to be stored:
On your own personal cloud.
On a storage ‘pod’ to which you control access (in the case of federated storage).
Yorba only actually ‘has’ the data while you’re actively using Yorba, and ceases to ‘have’ it when you close out the tab.
Moving forward, this ‘pod’ setup will also make it easier for you to take the data you’ve organized via Yorba and move it or use it elsewhere whenever you feel like it. Look into it! Federated storage is cool.
3. The cybersecurity classics
Third, we do all the classic and essential things like implementing 2FA and maintaining rigorous internal security protocols. Meat and potatoes stuff.
What happens if Yorba gets hacked?
Well, our feelings will be hurt.
There would not be much for them to take. It would be kinda like breaking into an empty vault.
Obviously, it’s still something we are very keen to avoid, and we have installed various failsafes that allow us to quickly detect and contain any intrusion. Explaining them here in great detail would be kinda counterproductive, as you might imagine.
Don’t you need my data to find my accounts?
Yes, we do. In order to find and aggregate all of your far-flung online accounts, we need your permission to connect to the email addresses and payment methods that you used to create those accounts.
There are also other methods (like a public web search) we employ to find your accounts that don’t require access to any of your data, but naturally, they’re not as comprehensive.
We will always communicate, in straightforward terms, exactly what access we need, why we need it, and what we’re doing with it.
We’ll never access your personal info without your explicit consent: you can choose which things you are granting Yorba permission to do. It’s not an ‘all or nothing’ situation; you can change your mind anytime.
For more details, check out our Privacy Policy.