Trust Centre

Security, privacy and compliance at React-IMS

We build React-IMS for organisations whose compliance posture depends on us. Everything we publish here describes how we operate today — not a future roadmap.

  • EU-hosted infrastructure with encryption at rest and in transit
  • Tenant isolation enforced by database row-level security
  • TOTP multi-factor authentication and leaked-password protection
  • Immutable audit log of administrative actions
  • Published sub-processor list with 30 days' notice of changes
  • Responsible disclosure channel with 2 business-day acknowledgement

Browse the Trust Centre

Each page below is maintained by Tamam Technologies Ltd (trading as React-IMS). None of these documents constitute independent certification; they are the basis for your own due diligence and the contractual commitments we are prepared to make.

Need something specific?

Enterprise customers can request a signed DPA, a vendor security questionnaire response, a sub-processor change subscription, or a security review call.