Back to Privacy & Terms
Data Security

Data Security Policy

Link Translations works with clients across the legal, financial, healthcare, government, and corporate sectors. This policy describes the security practices we maintain to protect your data at every stage.

Last updated: March 1, 2026

256-bit SSL/TLS
All communications
Role-Based Access
Permission system
PCI Level 1
Stripe payments
Annual Pen Tests
Third-party audits
Core principle

Confidentiality

All client data is handled with strict confidentiality. We use secure transmission methods with no unauthenticated access to your content. Every linguist and staff member is bound by Non-Disclosure Agreements (NDAs). Our practices are designed to fully meet client requirements and satisfy applicable laws and regulations.

Awareness

Security Awareness

We continuously improve our security measures and procedures. Changes to security practices are communicated to all employees and contractors promptly. All team members receive security awareness training as part of onboarding and on an ongoing basis.

Infrastructure

Secure Platform

Link Translations operates on secure, access-controlled cloud infrastructure. Key security features include:

256-bit SSL/TLS

All communication with our platform is encrypted with 256-bit SSL/TLS encryption.

Role-Based Permissions

Access to client content is protected with a roles-based permission system.

PCI-Compliant Payments

We do not store credit card information — payment data is handled exclusively by Stripe.

Cloud Infrastructure

All infrastructure runs on industry-standard cloud servers with physical and logical access controls.

Policy

Information Security Policy

Link Translations maintains a formalized information security policy to comply with various regulatory and business requirements. This policy protects all sensitive and confidential data stored, accessed, or transmitted by our platform, including applications, components, infrastructure, and underlying systems.

Assessment

Risk Assessment

We have designed a risk assessment program to evaluate enterprise-level risk at least annually or upon significant changes to the environment. This program identifies and assesses threats to and vulnerabilities in our systems and services.

Safeguards

Technical & Organizational Safeguards

Link Translations implements appropriate technical and organizational safeguards to protect sensitive information:

1

Confidentiality Agreements

All employees and contractors are required to read and accept confidentiality agreements prohibiting disclosure of company and client data.

2

Access Controls

Strict access controls restrict private information to privileged users with assigned responsibilities related to their role.

3

Data Handling & Retention

We maintain a data handling, retention, and disposal program. We implement a data classification standard to ensure confidential data is properly secured.

4

Data Minimization

We retain sensitive and confidential data only for as long as necessary to fulfill its purposes, unless otherwise required by law or client contractual obligations.

5

Network Segmentation

We segment our network to prevent direct or unauthorized connections between external networks and our information systems, particularly confidential data in cloud environments.

Testing

Vulnerability Management

We maintain a vulnerability management program to ensure the confidentiality, integrity, and availability (CIA) of our information systems:

Internal and external security scans
Penetration testing conducted at least annually
Issue remediation workflows for identifying, classifying, prioritizing, and remediating vulnerabilities
Continuous monitoring of systems and infrastructure

Independent third-party penetration tests are conducted at least annually on systems with confidential data or critical risk ratings.

Response

Incident Response

Link Translations operates with a Cybersecurity Incident Response Plan. In the event of a security incident, we follow documented procedures to:

Identify and contain the incident
Assess the scope and impact
Notify affected parties in accordance with applicable laws
Remediate the vulnerability and prevent recurrence
Document the incident and outcomes for review

Document Handling

Documents submitted for translation are treated with the highest level of care:

Transmitted and stored using encrypted connections
Only assigned linguists and authorized staff have access
Linguists work within our secure platform — not via email
Retained only as long as needed, then securely disposed

Payment Security

All payment processing is handled by Stripe, a PCI Level 1 certified payment processor.

We never store credit card numbers, CVVs, or other sensitive payment data on our servers.

Questions About Our Security?

For questions about our data security practices, contact us at:

Link Translations, Inc. · 66 Wynnewood Lane, Stamford, CT 06903