Security & Responsible Disclosure
Last updated: 2026-03-27
Version: 2.0
Overview
Security is built into the ProTaxAdvisorsFL / Protaxbolt platform operated by GD Management & Services LLC. We use layered controls and welcome responsible disclosure to keep customers safe.
Details
- Data is protected with encrypted transport, role-based access controls, tenant isolation, audit trails, and least-privilege administration.
- Privileged production access is restricted, reviewed, and expected to use MFA and logged workflows.
- Sensitive IRS, billing, password, impersonation, and financial actions are designed to be auditable and traceable to an authenticated actor.
- Application changes are reviewed and tested before release. Operational monitoring, alerting, and backups support recovery and incident response.
- We maintain safeguards appropriate for handling tax-return information and related financial data. Security controls are designed to support tax-workflow confidentiality, integrity, and restricted access.
- Responsible disclosure: email security@protaxadvisorsfl.com with steps to reproduce. Do not access other customer data or disrupt services. We will acknowledge reports promptly and communicate remediation timelines based on severity.
Contact
Report vulnerabilities or request security artifacts at security@protaxadvisorsfl.com.