Skip to content

Security & Trust

Last updated: August 3, 2026

Overview

Digital Visionworks LLC ("we", "our") is committed to protecting the security and privacy of your data. This page outlines the measures we take to secure the Clockwork Venue service ("Service") and keep your information safe.

Data Protection

We implement robust safeguards to protect your data.

  • Encryption in Transit: All data transmitted between your device and our servers is encrypted using industry-standard HTTPS/TLS (Transport Layer Security).
  • Encryption at Rest: Data stored in our databases is encrypted at rest by our infrastructure providers (Google Cloud), protecting it from physical or logical unauthorized access.
  • Credential Security: Firebase Authentication securely handles account credentials. Clockwork Venue does not store raw passwords.

Access and Roles

Access to data within Clockwork Venue is governed by role-based access controls (RBAC). Roles such as DJ, Manager, and Owner have specific permissions to ensure users can only access the information necessary for their function. We follow the principle of least privilege.

Infrastructure and Storage

Clockwork Venue uses Google Firebase for application infrastructure and Vercel for the marketing site and Manager Portal. These providers include encryption, redundancy, and platform security controls. Clockwork Venue does not currently promise a customer-accessible point-in-time restore service or a defined backup recovery SLA. Owners should retain exported shift reports needed for their own records.

Availability and Incident Response

We review provider logs and reported issues to identify service and security problems. If we confirm a security incident, we will work to contain it, investigate it, and notify affected parties when required by law.

If you suspect an urgent security issue, please contact us at security@clockworkvenue.com.

Subprocessors

We use trusted third-party service providers to help us deliver the Clockwork Venue service. These subprocessors are vetted for their security and privacy practices.

  • Google Cloud / Firebase: Cloud infrastructure, database, and hosting.
  • Vercel: Marketing site and Manager Portal hosting.
  • Stripe: Secure payment and subscription billing.
  • Supabase: Sales and Expo inquiry storage.
  • SendGrid: Transactional account and invitation email delivery.

This list may be updated as our service evolves.

Vulnerability Disclosure

We encourage responsible disclosure of security vulnerabilities. If you believe you have found a vulnerability, please report it to us at security@clockworkvenue.com so we can investigate and address it promptly. We do not currently offer a bug bounty program.

Data Requests

For information on how to access, export, or request deletion of your personal data, please refer to our Privacy Policy or contact us at privacy@clockworkvenue.com.