SECURITY & TRUST

Your data is the business.We treat it that way.

Rentway runs real rental portfolios — rent, ledgers, leases, and tenant records. That data is held to the same security and accounting rigor you'd expect from financial software, by design.

Encrypted in transit & at rest Role-based access Full audit trail Stripe & Plaid verified

How we protect your account

Six controls that are on by default — not an enterprise upsell.

Encrypted end to end

Every byte is encrypted in transit (TLS 1.2+) and at rest (AES-256). Your tenant records, leases, and financials are never stored in the clear.

Role-based access

Admin, manager, and team roles scope exactly what each user can see and do. Owners and tenants only ever see their own portal.

Org-level isolation

Row-level security enforces a hard boundary between organizations at the database. One landlord's data can never surface in another's account.

Full audit trail

Every meaningful change — payments posted, leases edited, settings changed — is logged with who, what, and when. Nothing happens off the record.

Bank-grade payments

Card and bank details are handled by Stripe and Plaid. Rentway never sees or stores a raw card number or bank login — only tokens.

Backups & recovery

Continuous, point-in-time database backups mean your ledger and documents are recoverable — not riding on a single machine.

COMPLIANCE & PARTNERS

Standards we build on

We don't reinvent trust — we build on the providers banks and lenders already rely on.

Built on hardened infrastructure

Rentway runs on SOC 2 / ISO 27001-certified cloud infrastructure (Supabase + Vercel). We follow SOC 2-aligned controls and are pursuing formal certification as we scale.

PCI handled for you

All card payments run through Stripe, a PCI-DSS Level 1 provider. Payment data never touches Rentway servers, so your PCI scope stays effectively zero.

Read-only bank connections

Bank feeds come through Plaid using tokenized, read-only access. We can see transactions to reconcile your books — we can never move money out of your account.

Screening built for compliance

When you screen an applicant through Rentway, it runs on accredited consumer reporting agencies under FCRA-compliant workflows — with adverse-action handling built in.

YOUR DATA, YOUR TERMS

You own your data. Full stop.

We're a tool you run your business on — not a place your data gets locked in or quietly monetized.

  • Your data is yours — export your tenants, leases, and ledger anytime.
  • We never sell your data or your tenants' data. Ever.
  • Delete your account and we purge your data on request.
  • Privacy practices aligned with CCPA and GDPR principles.
BUILT BY AN OPERATOR

Software that holds money is held to a higher bar.

Rentway is built by people who actually run rental property — who reconcile to the penny, hold security deposits in trust, and answer the tenant calls. We secured it the way we'd want our own portfolio secured, because it is.

Security questions or to report a concern: support@rentway.ai