Factumo
  • Blog
  • Guide
  • Pricing
  • FAQ
  • Contact
Sign InSign Up
Factumo

100% Verifactu-compliant invoicing software built for Spain. Professional invoicing made simple and legal.

© Copyright 2025 Factumo. All Rights Reserved.
ELD Technologies SL (CIF: B72979180)

About
  • Blog
  • Contact
Product
  • Guide
  • FAQ
  • Security
  • Compliance
Legal
  • Terms of Service
  • Privacy Policy
  • Cookie Policy
  • Legal Notice

Security at Factumo

We take security seriously. Regular audits, transparent reporting, and proactive vulnerability management.

Security Hardened & Production Ready

Our latest comprehensive security review (October 23, 2025) confirms zero critical vulnerabilities and all high-priority issues resolved.

0 Critical Vulnerabilities
0 High Priority Issues
Regular Security Audits

Security Assessment

October 23, 2025
Database Layer
A-
Strong
Application Layer
9.7/10
Excellent
Overall Risk Level
LOW
Production Ready

Security Excellence

Multi-Tenant Isolation - Zero cross-account access possible
Row-Level Security (RLS) - Database-enforced access control
Spanish Legal Compliance - Real Decreto 1619/2012
Complete Audit Trail - 7-year financial record retention
100% Input Validation - Comprehensive schema validation
Data Encryption - At rest and in transit
0
Critical Issues
0
High Priority
5
Improvements
Jan 2026
Next Review

Our Security Features

Row-Level Security (RLS)

Database-level access control ensures users can only access their own data. Multi-tenant isolation enforced at the PostgreSQL level.

Input Validation

Comprehensive Zod schema validation on all server actions prevents malicious input and ensures data integrity.

Complete Audit Trail

All financial operations are logged with field-level change tracking. 7-year retention meets Spanish tax compliance requirements.

Regular Security Reviews

Frequent comprehensive security audits identify and address vulnerabilities proactively. Transparent reporting of all findings.

Our Security Commitment

  • We conduct comprehensive security reviews quarterly and after major feature releases
  • All security findings are documented and addressed based on severity
  • We maintain transparent security reporting on this public page
  • Our codebase follows security best practices including RLS, input validation, and proper authorization
  • We stay current with security updates and patches for all dependencies

Report a Security Issue

If you discover a security vulnerability, please report it responsibly. We appreciate your help in keeping Factumo secure.

Email: security@factumo.com