Legal
Security
How Little Loud Clicks protects accounts, payments, and the click flood cap, and how to report a problem.
Effective 24 August 2026Version 2026-08-24
Controls we use
- Encryption in transit using HTTPS/TLS.
- Password hashing and Fortify account authentication, including optional two-factor authentication and passkeys.
- Hashed IPs on click events used for the ten-second flood cap.
- Payment processing through Stripe. We do not store full card numbers.
Access and operations
- Production access is limited to authorized personnel.
- We watch service health and investigate abuse that threatens the board.
- We keep backups and recovery procedures so the product can come back up after a failure.
Your role
- Use a long, unique password stored in a password manager.
- Enable two-factor authentication and keep recovery codes somewhere safe.
- Keep the email on the account secured. Verification and recovery go there.
Related policies
See privacy and play terms for how data is handled and what the board sells.
Responsible disclosure
If you think you found a security vulnerability, email [email protected] with details. Give us time to investigate before you publish it.
Contact
Email [email protected] or write to Modoterra Corporation, 131 Continental Dr Suite 305, Newark, DE 19713 US.