Home | About Us | Features | Affiliate/Reseller Program | Sign Up Now!
Elbowspace
Photos
Login    Contact Us

Free 20 Day Trial!
 
Secure Web Form Hosting
Security Policy    

   Data Security
All forms created on Elbowspace.com will be hosted on a secure server at no extra charge. Our backend processing (including form creation & form results retrieval) is also completely secure.

We use the highest level of security, SSL 256 bit encryption, to insure that your information 100% secure.


Cryptographers consider 256-bit encryption impossible to crack, as it would take millions of years with the fastest computers to try all the combinations. On the other hand, 40- and 56-bit keys are not as strong and it is feasible to try all the combinations.

SSL technology defined

SSL is a protocol for securing communication between a web browser, and web server. Whenever you access a web server using https, the page you are sent is encrypted, and any information you send to that server is also encrypted. Many online transactions fail at the last minute when consumers consider the potential risks of entering their credit card and other personal information, or when it is not clear whether it is safe to download code from your site. Utilizing Godaddy's digital SSL (Secure Sockets Layer) 'handshake', based on the leading security protocol on the Internet, you and your customers can rest assured that all online communications are secure while the information is being transmitted. Securing the transmission of information holds obvious benefits, as does signifying that we are a trustworthy online organization. The tried-and-tested technology of Godaddy's SSL Web Server Certificate protects against password and information interception, ensuring that the online relationship we have with you, the customer, will be one based on trust.




Elbowspace.com also provides you with the option of database encryption for each of the fields on your form(s).

Database field level encryption defined

The database encryption option will encrypt selected sensitive data (like social security no & credit card no) while it resides on our databases. Not to be confused with SSL (which we also provide), database encryption protects your data after we receive it as opposed to during it's transmission.



Elbowspace.com also provides you with assistance in achieving PCI compliance.

PCI Assistance Mode defined

I. PCI Assistance Mode, when switched on, will send intrusion alert emails to the owner of the account,
   if the following conditions present themselves:
   a. If 5 consecutive unsuccessful login attemps cause a lockout of this account, an email indicating this
      possible attempted intrusion will be sent to the account owner.
   b. If a successful login is detected from a ip address that is not the normal location of the account owner,
      an email indicating this possible attempted intrusion will be sent to the account owner.

II. PCI Assistance Mode, when switched on, will also require a password change every 90 days without repeating
    any one of your last 5 passwords.



Audit trail logs (tracking every login into your account) are also provided by Elbowspace.com. The logs are avilable for review 24/7.

Audit trail logs defined

Audit trail logs provide detailed information pertaining to the access of each of
your Elbowspace.com accounts, including child (subordinate accounts).
The information includes:

Log Date: Date of login.
Log Time: Time of login.
User IP Address: An IP address is the unique identifier of a computer connected to the internet (alot like a phone number).
                          This information is important for recognizing a non-pattern login. This could expose a login intrusion.
User Login: Elbowspace.com userid (your email address)
System Status: Either login successful or attempted login unsuccessful.
 
   Server Data Center & Physical Security
      Location: Our servers are colocated with IO Data Centers in Scottsdale Arizona.
      Phoenix colocation. An ideal location. Essentially free of natural disasters or ‘mega city’ political risks, the Phoenix/Scottsdale climate and geography provide an unusually stable environment for colocation. Phoenix also offers a compelling power and utility infrastructure.
      High levels of security includes access card system with CCTV, extensive video surveillance, biometric iris scanner, 24X7X365 security staff & VESDA and pre-action fire suppression.
      High Availability Power: Arizona Public Service(electric company) backed up by 9.4 Mw UPS and five 2.0 Mw Caterpillar Diesel generators along with two additional 1.75 Mw Caterpillar Diesel generators. 27000 gallons of diesel fuel allow for at least 48 hours of continuous up time, during a power outage, before the acquisition of new fuel is required.
      High Availability Network: The data center building is network neutral served by several major data and telecommunications carriers; including Cox, AGL, Qwest, and AT&T. Multiple redundant/diverse paths (across any/all of these carriers) ensure the highest server availablility.