Security & privacy

Your lab’s data, protected by design.

LabOps Lite is built so that the safeguards a lab’s data deserves are handled quietly, from the database up — not left as an afterthought.

Isolated per lab
Every lab’s data is walled off at the database level using row-level security. Each query is filtered to the lab you belong to — members can only ever see their own lab’s data, never anyone else’s.
Individual accounts
Everyone signs in with their own authenticated account — no shared lab login and no anonymous product access. Operational records preserve the member or recorded actor responsible wherever that workflow captures one.
Clear administrative responsibility
PI, lab manager, and member roles keep ownership and sensitive administration understandable. Billing, ownership, team management, and destructive actions retain their existing safeguards while day-to-day lab workflows remain broadly accessible.
Connected operational history
Sample custody, inventory changes, protocol runs, order updates, equipment records, revisions, audit diffs, packets, and report exports feed a timestamped Activity view — practical accountability without claiming a formally validated regulatory audit system.
Encrypted in transit and at rest
Data travels over encrypted HTTPS connections and is stored on managed Postgres infrastructure that encrypts data at rest. Your lab’s records aren’t sitting in the open.
Card details stay with Stripe
Checkout and card handling happen on Stripe. LabOps Lite stores only the billing identifiers, selected plan, and subscription state needed to activate and manage the correct lab workspace.
Your data stays yours
Export core records from their working modules: inventory, Samples, protocols, and projects as CSV, notes as PDF, calendars as ICS, plus operational and sample reports where available. You can also request a broader export.
Your lab stays in control
We never sell your data or delete active-lab content without your direction. Lapsed labs receive advance notice and an export opportunity before any future retention limit applies.

Built on infrastructure you can trust

LabOps Lite runs on managed cloud infrastructure in the provider regions configured for the service — application hosting and a managed Postgres database from established providers. That means your data benefits from their encryption and network security controls, rather than a homegrown server someone forgot to patch. Our Privacy Policy identifies the providers that process service data.

We’re a small, focused team and we’re candid about what that means: we don’t yet carry formal certifications like SOC 2, and we don’t make uptime guarantees we can’t stand behind. What we do promise is a clear data model, honest handling, and data you can pull out at any time.

Your data rights
Want a copy of your lab’s data, or want it deleted? Export is built into the app, and you can reach us any time for a full export or deletion request.
Contact us →
The details
Read exactly what we collect, how it’s used, and the terms you’re agreeing to.
Report a security issue
Found a vulnerability or something that looks off? Report it privately without including customer data, passwords, or API keys. We welcome responsible disclosure and will investigate it through our security process.
Report an issue →