security

We’re building the platform of choice for taking life’s digital experiences over the top

Coda is secure

At Coda, we understand that building security is more than just implementing HTTPS. It also means protecting your site from bad actors looking to exploit fraud opportunities. Even with a secure webstore, bad actors will try to look for vulnerabilities they can exploit to gain access to content fraudulently.

This is why Coda is constantly implementing solutions that provide threat intelligence and fraud detection early on to help us build a more secure application, as well as prevent fraudsters who may attempt to build look-alike sites and lure your customers into making payments to them using familiar channels.

Coda has detailed security standards, guidelines, and advanced SSDLC (Secure Software Development Lifecycle) tooling to detect potential security vulnerabilities early on. Our comprehensive approach includes:

Payment Card Industry Data Security Standard (PCI DSS) Level 1 Certification (the highest and most stringent level of adherence). Maintained and governed by the Payment Card Industry Security Standards Council (PCI SSC), the PCI DSS is periodically updated to address evolving security threats and technologies.
WAF (Web Application Firewall) & Rate Controls (DDOS/DOS) – key protection mechanisms setup to handle external attacks ranging from web/API attacks to all-out DDOS.
Dedicated fraud/risk team monitoring transactions 24/7. We use our risk engine to apply intelligent transaction limits to mitigate risk of fraudulent behaviour, while auto fraud detection tools alert us of probable bad actors.
Global 24/7 anti-phishing platforms, to protect our brand and intellectual property by automatically detecting fake sites, domains, and fake social posts. These are then escalated to domain registrars and social platforms to shut down threats.

Coda is Compliant

Privacy compliance is more multi-faceted than ever, in line with the changing tech landscape. To combat the complexity of multi-jurisdictional setting, Coda has implemented a risk-based approach resulting in privacy control. Our Group Privacy Officer and supporting team ensures everyone at Coda strictly adheres to applicable data privacy standards including:

  • EU GDPR
  • CCPA
  • Singapore PDPA
  • Brazil LGPD
  • UK GDPR
  • Philippines PDPA
  • Indonesia PDP
  • Canada PIPEDA

Coda is deeply committed to safeguarding your Personal Data, in order to protect against loss, misuse, modification, unauthorised or accidental access or disclosure, alteration, or destruction. Unfortunately, no data transmission or storage over the Internet can be guaranteed as totally secure. Nonetheless, we have adopted and currently practice robust administrative, organizational, technical, and physical security measures to protect your Personal Data to the best of our reasonable capacity, including but not limited to the following:

Limiting Personal Data access to authorized and/or necessary personnel.
Implementing technical solutions to ensure information security.
Continuous monitoring and review of Personal Data protection measures.
Other security measures, as may be required by the laws and regulations applicable in the country where you are located.

Speak to our experts

Monetize your game, app, or website with Coda
Our publisher partnerships team is available to discuss Codapay, Codashop, and xShop.
Get in touch ->
Add your payment method to Codashop
Our channel partnerships team is available to speak with payment method providers.
Be a partner ->
Get help with a Codashop transaction
Our friendly support team is available to help Codashoppers with any questions.
Get support now ->