Security & Compliance
Martian Alpha's security controls are designed around the SOC 2 Trust Services Criteria and ISO/IEC 27001:2022: encryption in transit with HSTS, bcrypt password hashing with breached-password checks, optional two-factor sign-in with AES-256-GCM encrypted secrets, row-level access controls, a strict Content Security Policy, rate limiting, daily backups, data export and account deletion. Martian Alpha is not SOC 2 audited or ISO 27001 certified. HIPAA does not apply because no health information is collected. Card payments are handled by Stripe, a PCI DSS Level 1 service provider.
Not financial advice
Martian Alpha publishes general, impersonal research and data. It does not give personalised investment advice, execute trades or hold client money, and is not registered as an investment adviser or broker-dealer.
Report a security issue: company@martianalpha.com (see /.well-known/security.txt).