Security

Security & Compliance

Last Updated: March 2026

At Magpiie, security, privacy, and data protection are core priorities. Magpiie is a Software-as-a-Service (SaaS) platform operated by Metapher Media Labs and available at https://magpiie.com.

Magpiie enables creators, teams, and organizations to manage video production workflows, drafts, revisions, and collaboration processes. Because the platform may store important content and organizational data, we are committed to maintaining strong security and compliance standards.

This Security & Compliance page explains how Magpiie protects customer data and aligns with international privacy regulations including:

  • GDPR (General Data Protection Regulation)
  • CCPA (California Consumer Privacy Act)
  • CPRA (California Privacy Rights Act)

1. Our Security Philosophy

Security at Magpiie is designed around three core principles:

Confidentiality

Customer data should only be accessible to authorized users.

Integrity

Data must remain accurate and protected from unauthorized modification.

Availability

Users should be able to reliably access the Magpiie platform whenever needed.

Our infrastructure, operational practices, and internal policies are designed to protect these principles.

2. Infrastructure Security

Magpiie uses modern cloud infrastructure to ensure reliability, security, and scalability. Infrastructure security practices include:

  • Secure cloud hosting environments
  • Network segmentation and firewall protections
  • Continuous infrastructure monitoring
  • Protection against distributed denial-of-service (DDoS) attacks
  • Automated system updates and patch management

Infrastructure is designed to support high availability and resilience.

3. Data Encryption

Magpiie protects data through strong encryption practices.

Encryption in Transit

All communication between users and the Magpiie platform is encrypted using secure protocols such as:

  • HTTPS
  • TLS encryption

This ensures data transmitted between the user's device and our servers cannot be intercepted.

Encryption at Rest

Where applicable, stored data may be protected using encryption mechanisms provided by secure cloud infrastructure. Encryption helps protect data even if unauthorized access to storage systems occurs.

4. Access Control

Magpiie uses strict access controls to ensure that only authorized individuals can access sensitive systems and data. Access management practices include:

  • Role-based access control (RBAC)
  • Authentication requirements for internal systems
  • Access logs and monitoring
  • Restricted production environment access

Internal access to customer data is limited to authorized personnel only when necessary for operational support.

5. Application Security

Security is built into the development and operation of the Magpiie platform. Application security practices include:

  • Secure development practices
  • Code review processes
  • Monitoring for vulnerabilities
  • Protection against common web application threats

These measures help protect the platform from threats such as:

  • SQL injection
  • Cross-site scripting (XSS)
  • Unauthorized access attempts

6. Data Protection and Privacy

Magpiie is designed with privacy and data protection in mind. We comply with applicable data protection laws including:

GDPR (General Data Protection Regulation)

For users in the European Economic Area, Magpiie supports GDPR compliance by providing:

  • Data processing transparency
  • Data subject rights support
  • Data protection safeguards
  • Data Processing Agreement (DPA)

CCPA / CPRA (California Privacy Laws)

For California residents, Magpiie provides:

  • Transparency regarding data collection
  • The right to request deletion of personal data
  • The right to know what information is collected
  • The right to correct inaccurate information

Magpiie does not sell personal information.

7. Data Processing Practices

Magpiie processes data only as necessary to provide the platform's services. Data processing may include:

  • User account management
  • Workspace collaboration features
  • Draft and revision storage
  • Platform analytics and performance monitoring

Customers retain ownership of their content and data uploaded to Magpiie.

8. Sub-Processors and Third-Party Services

Magpiie may rely on trusted third-party providers to deliver certain services. These may include providers for:

  • Cloud infrastructure
  • Payment processing
  • Email delivery systems
  • Security monitoring tools

Payment transactions may be processed through:

  • Razorpay – primary payment gateway for subscriptions
  • PayPal – enterprise and international client payments
  • Payoneer – enterprise transactions
  • Bank transfers – enterprise agreements

These providers maintain their own security and compliance programs. Magpiie does not store complete credit card information.

9. Data Retention and Deletion

Magpiie retains data only as long as necessary to provide services and meet legal obligations. Users may request:

  • Data export
  • Data deletion
  • Account closure

Upon termination of services, customer data may be deleted or anonymized according to retention policies.

10. Incident Response and Security Monitoring

Magpiie maintains monitoring and response procedures designed to identify and address potential security incidents. Our approach includes:

  • Monitoring infrastructure for suspicious activity
  • Responding to potential vulnerabilities
  • Investigating security incidents
  • Notifying affected parties when required by law

If a data breach occurs, we follow applicable legal notification requirements.

11. Backup and Disaster Recovery

Magpiie infrastructure is designed to minimize the risk of data loss. Disaster recovery and resilience practices may include:

  • Data backups
  • Redundant infrastructure
  • Failover capabilities
  • Monitoring of system availability

These practices help ensure continuity of service.

12. Employee Security Practices

Security is not only technical but also operational. Metapher Media Labs enforces internal security policies including:

  • Confidentiality agreements
  • Access restrictions
  • Security awareness practices
  • Responsible data handling procedures

Access to sensitive systems is limited to authorized personnel.

13. Responsible Disclosure

Magpiie encourages responsible reporting of potential security vulnerabilities. If you believe you have discovered a vulnerability in the Magpiie platform, please contact us so we can investigate and address the issue.

Security reports can be submitted to:

security@magpiie.com

We appreciate responsible disclosures that help improve platform security.

14. Compliance Commitment

Magpiie is committed to maintaining strong security and compliance practices. Our security program is aligned with principles commonly found in industry frameworks such as:

  • SOC-style security controls
  • Data protection regulations
  • Privacy-by-design principles

As Magpiie grows, we will continue to evolve our security practices and compliance posture.

15. Customer Responsibilities

Customers also play an important role in maintaining security. Users should:

  • Protect account credentials
  • Use strong passwords
  • Manage workspace permissions carefully
  • Avoid sharing sensitive login information

Following these best practices helps maintain platform security.

16. Updates to this Security Page

This Security & Compliance page may be updated periodically to reflect:

  • Changes in infrastructure
  • Security improvements
  • Compliance updates

When updates occur, the "Last Updated" date will be revised.

17. Contact Information

For security, compliance, or privacy questions, please contact:

Product: Magpiie

Website: https://magpiie.com

Company: Metapher Media Labs

Security Contact: security@magpiie.com

Privacy Contact: privacy@magpiie.com

Reach us

Get in touch

A real person on the team replies — usually within one business day.

Join the community

Share workflows, ask questions, and trade tips with editors and creators using Magpiie every day.

Avg. reply time: under 24 hours, Mon–Fri.

Contact form

Talk to our team

Tell us a little about your workflow — we'll come back with a tailored answer, not a templated reply.

By submitting, you agree to our privacy policy. No spam, ever.