Coaches Compass
Security
These are the practices Coaches Compass follows today. They describe how the platform is built — they are not third-party audits or certifications.
Last updated August 2026
Program isolation
Every record belongs to a program. Access rules are enforced in the database itself, not only in the interface, so one program cannot read or change another program's data even through a direct request.
Access control
Coaches and staff sign in with their own account. Program admins control who is invited and who can manage the website. Permission checks run on the server for every write.
Public versus private
Only pages a program has explicitly published are served publicly. Drafts, unpublished pages, admin records and internal notes are not reachable from the public website.
Connections and storage
Traffic to Coaches Compass is served over encrypted HTTPS connections. Files a program uploads are stored in access-controlled storage tied to that program.
Payments
Payment card details are handled by our payment processor. Coaches Compass does not store full card numbers.
AI and your content
AI features read only the sources a coach selects and authorizes, and their output is always presented for review before anything is published.
Reporting a problem
If you believe you have found a security issue, email info@mycoachescompass.com with the details and how to reproduce it. Please do not publicly disclose the issue before we have had a chance to respond. We will acknowledge reports and keep you updated on the fix.
Questions? Email info@mycoachescompass.com.
