Security
Protect your work while keeping useful trade information available.
Fintora Technologies Inc., d/b/a Tandom.ai applies practical safeguards to its sourcing workflows, accounts, free import tools, public catalogs, and APIs. No internet service is risk-free, and this page does not represent a certification or guarantee.
Protect data in transit
Production web traffic uses HTTPS. Service providers are accessed through authenticated connections and scoped credentials.
Limit access
Account, administrative, and data-service access is restricted through authentication, authorization rules, and least-privilege service roles.
Reduce abuse
Public tools and APIs use request validation, rate controls, traffic classification, and monitoring appropriate to the surface.
Review and respond
We monitor application errors and operational signals, review reported vulnerabilities, and prioritize remediation based on impact and exploitability.
Report a vulnerability responsibly
Send a clear description, affected URL, reproduction steps, and potential impact to legal@tandom.ai. Do not access data that is not yours, disrupt production, degrade service availability, use social engineering, or publish an unresolved vulnerability without coordinating with us.
We will acknowledge a credible report, investigate it, and keep the reporter informed when practical. We do not offer a standing bug bounty unless agreed in writing before testing.
Last reviewed August 31, 2026