Skip to content

Trust Center

Trust, stated precisely.

Blivo holds your company's data and its daily work. This page describes exactly how that trust is protected. Where something is not ready, it says so plainly.

Privacy

What Blivo collects, and why. In plain words.

What we collect

Your account details, the company data you enter, and records of actions taken in the platform. Nothing else.

What we never do

No trackers, no advertising cookies, no external analytics, no selling or sharing of data. Our business is subscriptions, not ads.

Where data lives

On our own servers, isolated per company, in databases we control. No third-party cloud data stores.

What AI providers see

To do AI work, the platform sends the necessary request context to its AI provider. Your data is never used to train models, and the provider relationship is governed by our data terms.

Deleting data

A company owner can delete business data within the published restore window. Action records remain, as an accounting trail, but contain no file contents.

Infrastructure

The architecture, at a level that's safe to publish.

Our own server

Blivo runs on a single dedicated server we administer, not a shared hosting platform. The database, the application, and the files live on it.

Private by default

The database, the cache, and the internal services accept connections only from the server itself. To the public internet, only the web ports exist.

HTTPS everywhere

Every hostname serves HTTPS with a certificate from a public certificate authority, issued and renewed automatically by the reverse proxy. HTTP redirects to HTTPS.

Isolation between companies

Every query is scoped to your company by the server, not by the client. A request for another company's data returns the same answer as a request for something that doesn't exist.

Secrets kept apart

Keys and credentials live in protected configuration on the server, never in the source code, never in the repository.

Reliability

How your data is protected against loss, and how you can check it.

  • Backups of the full platform run daily, automatically.
  • Every backup is verified after it's taken; a backup that can't be verified is treated as a failure.
  • Restore drills run weekly, so recovery is practiced, not theoretical.
  • Health endpoints distinguish a running process from a healthy service: the readiness check proves the database and cache are actually reachable.
  • Records of AI actions are append-only and survive with the data they describe.

Engineering

How the platform is built and verified, honestly.

Tests before shipping

Every change passes the automated test suite: unit tests, integration tests against a real database, and route-level checks. A failing test stops the release.

Type checking end to end

The API, the application, and the website are all strictly typed, and type errors fail the build. Whole classes of bugs don't reach production.

Verified deployments

Every deployment is followed by live checks against the real service: pages, API routes, and health endpoints. A deploy that can't be verified is rolled back.

Append-only records

The record of every action cannot be edited or deleted by anyone, including us. It's the same for every company on the platform.

Honest failures

When something isn't configured or can't happen, the platform says exactly that. There is no code path that fabricates a success.

Release reports

Release reports

Every significant release, what it changed, and how it was verified. This is the structure every future report follows.

v0.20October 2026

Premium dark site, fixed direction, Help Center

What changed

The public site moved to the premium dark design with both languages rendering in the same fixed direction. The Help Center launched at support.blivoai.com with 24 articles in two languages.

How it was verified

Full responsive audit across seven widths and both locales, link and SEO checks, and live verification of every route on the production server.

v0.19October 2026

The business-owner website

What changed

Complete public website rewrite in the owner's language: a sixteen-section story from problem to outcomes, a Trust Center with honest statuses, and live pricing.

How it was verified

Automated overflow checks on nine pages in two locales, search and metadata validation, and an independent visual design review before deployment.

v0.18October 2026

Direct serving on our own server

What changed

The platform moved to its own server, serving all surfaces directly on the standard web ports, with automated backups, backup verification, and weekly restore drills.

How it was verified

Every public route and API endpoint verified live from outside the server, database restored from the production backup and reconciled.

Older infrastructure releases are summarized in the repository history. Reports for future releases will be published here first.

Current status

The honest state of every capability, as of today. We update this table as things change.

CapabilityStatus
Data isolation between companiesConfigured
Password and session protectionConfigured
Append-only action recordsConfigured
Daily backups with verification and restore drillsConfigured
Human approval gatesConfigured
HTTPS with automatic certificates on all hostnamesConfigured
WhatsApp deliveryReady, needs your provider account
Telegram deliveryReady, needs your provider account
Email deliveryNot configured yet
Instagram and Facebook deliveryComing soon
SMS and phone deliveryNot currently supported
Multi-factor sign-inComing soon
Breached-password screeningComing soon
Security certifications (SOC 2, ISO)Not held; never claimed

Security roadmap

Security roadmap

Our plan for independent validation, stated in public so you can hold us to it.

Now

Internal verification

Every release passes the automated security-relevant test suite: isolation between companies, session integrity, brute-force lockouts, and financial invariants. Deployments are verified live before being declared done.

Next

Multi-factor sign-in and breached-password screening

Both are designed and scheduled. MFA will be offered per account, and sign-up will screen new passwords against known-breach lists. This page will say 'configured' the day they ship.

Then

Independent security review

We plan an external penetration test by an independent firm, with the report summarized here, findings and fixes included. We will not claim it before it exists.

Later

Certification readiness

SOC 2 preparation is the long-term goal, undertaken when the customer base justifies it. Until an audit is passed, this page will keep saying: not held, never claimed.

This roadmap is a commitment device, not a marketing asset. Items move forward, or we explain why they didn't.

Reporting a security issue

If you find a security problem, write to [email protected]. We take reports seriously, fix what's real, and credit finders on publication with their permission.