Security and trust
Built for serious commercial documents.
Your proposals carry real commercial weight, so you should know how they are accessed, how acceptance is recorded, and how your data is handled. Here is the plain truth, with nothing overstated.
What is in place today
Sensible controls, stated plainly.
Recipient verification
Proposals open behind an email step, so you can see who is accessing them and the right person receives follow-up. It is verification of the recipient, not lead capture.
Authorised acceptance
Acceptance is a deliberate, recorded step. The person accepting confirms they are authorised to do so on behalf of their company, against a specific version of your terms, and the name, email, role, time, and terms version are recorded.
Role-based access
Access inside Quovia is controlled by role. People on your team see only what they should, and account access is managed by your administrators.
Your data is yours
You own your proposals and your data. We do not sell it or pass it to third parties, and we use it only to run the service for you.
Encrypted, tested backups
Your data is backed up daily and encrypted at rest, and the restores are tested regularly so we know recovery actually works, not just that a backup ran.
Hosted in the UK
Quovia runs on dedicated infrastructure hosted in the UK, behind encrypted connections, with access to the systems limited to the people who operate the service.
Privacy and data usage
We use your data to run Quovia, and nothing else.
The proposals you create, the recipients you send them to, and the engagement they generate are used for one purpose: to operate Quovia for you. We do not sell data, we do not share it with third parties for their own use, and a recipient's details are only used in connection with the proposal they were sent.
If you ever stop using Quovia, your data is yours to take and yours to have removed.
What we do and do not do today
Honest about where we are.
Quovia is a focused, early-stage product moving to commercial launch. We do not hold formal certifications such as ISO 27001 or SOC 2, and we will not claim that we do. What we have is a small, carefully run operation with the sensible controls described above, and a founder you can actually talk to about specifics.
If your business has particular security or data requirements, raise them in your demo. We would rather give you a straight answer about what is and is not in place than sell you reassurance we cannot stand behind.
Talk to us
Have a question we have not answered?
Book a short walkthrough and ask us anything about how Quovia handles your proposals and your data.