Security & Compliance
Last Updated: March 2026
At Magpiie, security, privacy, and data protection are core priorities. Magpiie is a Software-as-a-Service (SaaS) platform operated by Metapher Media Labs and available at https://magpiie.com.
Magpiie enables creators, teams, and organizations to manage video production workflows, drafts, revisions, and collaboration processes. Because the platform may store important content and organizational data, we are committed to maintaining strong security and compliance standards.
This Security & Compliance page explains how Magpiie protects customer data and aligns with international privacy regulations including:
- GDPR (General Data Protection Regulation)
- CCPA (California Consumer Privacy Act)
- CPRA (California Privacy Rights Act)
1. Our Security Philosophy
Security at Magpiie is designed around three core principles:
Confidentiality
Customer data should only be accessible to authorized users.
Integrity
Data must remain accurate and protected from unauthorized modification.
Availability
Users should be able to reliably access the Magpiie platform whenever needed.
Our infrastructure, operational practices, and internal policies are designed to protect these principles.
2. Infrastructure Security
Magpiie uses modern cloud infrastructure to ensure reliability, security, and scalability. Infrastructure security practices include:
- Secure cloud hosting environments
- Network segmentation and firewall protections
- Continuous infrastructure monitoring
- Protection against distributed denial-of-service (DDoS) attacks
- Automated system updates and patch management
Infrastructure is designed to support high availability and resilience.
3. Data Encryption
Magpiie protects data through strong encryption practices.
Encryption in Transit
All communication between users and the Magpiie platform is encrypted using secure protocols such as:
- HTTPS
- TLS encryption
This ensures data transmitted between the user's device and our servers cannot be intercepted.
Encryption at Rest
Where applicable, stored data may be protected using encryption mechanisms provided by secure cloud infrastructure. Encryption helps protect data even if unauthorized access to storage systems occurs.
4. Access Control
Magpiie uses strict access controls to ensure that only authorized individuals can access sensitive systems and data. Access management practices include:
- Role-based access control (RBAC)
- Authentication requirements for internal systems
- Access logs and monitoring
- Restricted production environment access
Internal access to customer data is limited to authorized personnel only when necessary for operational support.
5. Application Security
Security is built into the development and operation of the Magpiie platform. Application security practices include:
- Secure development practices
- Code review processes
- Monitoring for vulnerabilities
- Protection against common web application threats
These measures help protect the platform from threats such as:
- SQL injection
- Cross-site scripting (XSS)
- Unauthorized access attempts
6. Data Protection and Privacy
Magpiie is designed with privacy and data protection in mind. We comply with applicable data protection laws including:
GDPR (General Data Protection Regulation)
For users in the European Economic Area, Magpiie supports GDPR compliance by providing:
- Data processing transparency
- Data subject rights support
- Data protection safeguards
- Data Processing Agreement (DPA)
CCPA / CPRA (California Privacy Laws)
For California residents, Magpiie provides:
- Transparency regarding data collection
- The right to request deletion of personal data
- The right to know what information is collected
- The right to correct inaccurate information
Magpiie does not sell personal information.
7. Data Processing Practices
Magpiie processes data only as necessary to provide the platform's services. Data processing may include:
- User account management
- Workspace collaboration features
- Draft and revision storage
- Platform analytics and performance monitoring
Customers retain ownership of their content and data uploaded to Magpiie.
8. Sub-Processors and Third-Party Services
Magpiie may rely on trusted third-party providers to deliver certain services. These may include providers for:
- Cloud infrastructure
- Payment processing
- Email delivery systems
- Security monitoring tools
Payment transactions may be processed through:
- Razorpay – primary payment gateway for subscriptions
- PayPal – enterprise and international client payments
- Payoneer – enterprise transactions
- Bank transfers – enterprise agreements
These providers maintain their own security and compliance programs. Magpiie does not store complete credit card information.
9. Data Retention and Deletion
Magpiie retains data only as long as necessary to provide services and meet legal obligations. Users may request:
- Data export
- Data deletion
- Account closure
Upon termination of services, customer data may be deleted or anonymized according to retention policies.
10. Incident Response and Security Monitoring
Magpiie maintains monitoring and response procedures designed to identify and address potential security incidents. Our approach includes:
- Monitoring infrastructure for suspicious activity
- Responding to potential vulnerabilities
- Investigating security incidents
- Notifying affected parties when required by law
If a data breach occurs, we follow applicable legal notification requirements.
11. Backup and Disaster Recovery
Magpiie infrastructure is designed to minimize the risk of data loss. Disaster recovery and resilience practices may include:
- Data backups
- Redundant infrastructure
- Failover capabilities
- Monitoring of system availability
These practices help ensure continuity of service.
12. Employee Security Practices
Security is not only technical but also operational. Metapher Media Labs enforces internal security policies including:
- Confidentiality agreements
- Access restrictions
- Security awareness practices
- Responsible data handling procedures
Access to sensitive systems is limited to authorized personnel.
13. Responsible Disclosure
Magpiie encourages responsible reporting of potential security vulnerabilities. If you believe you have discovered a vulnerability in the Magpiie platform, please contact us so we can investigate and address the issue.
Security reports can be submitted to:
security@magpiie.com
We appreciate responsible disclosures that help improve platform security.
14. Compliance Commitment
Magpiie is committed to maintaining strong security and compliance practices. Our security program is aligned with principles commonly found in industry frameworks such as:
- SOC-style security controls
- Data protection regulations
- Privacy-by-design principles
As Magpiie grows, we will continue to evolve our security practices and compliance posture.
15. Customer Responsibilities
Customers also play an important role in maintaining security. Users should:
- Protect account credentials
- Use strong passwords
- Manage workspace permissions carefully
- Avoid sharing sensitive login information
Following these best practices helps maintain platform security.
16. Updates to this Security Page
This Security & Compliance page may be updated periodically to reflect:
- Changes in infrastructure
- Security improvements
- Compliance updates
When updates occur, the "Last Updated" date will be revised.
17. Contact Information
For security, compliance, or privacy questions, please contact:
Product: Magpiie
Website: https://magpiie.com
Company: Metapher Media Labs
Security Contact: security@magpiie.com
Privacy Contact: privacy@magpiie.com
Get in touch
A real person on the team replies — usually within one business day.
Join the community
Share workflows, ask questions, and trade tips with editors and creators using Magpiie every day.
Avg. reply time: under 24 hours, Mon–Fri.
Talk to our team
Tell us a little about your workflow — we'll come back with a tailored answer, not a templated reply.