Security and data protection.
How your church’s information is stored and kept safe.
Churches trust Churchday with sensitive information about their members. This page explains how that data is stored, protected, and kept private, in plain language.
Walled off
Every church's data is isolated from every other's, enforced by the database itself.
No passwords
We never store a password. People sign in with a one-time code or with Google.
Cards never stored
Payments run through Stripe. Card numbers never touch our servers.
Your data stays yours
Your church owns its data. Export it anytime. We never sell it.
How your data is protected. The protections that matter most, on by default.
One church can never see another's
Each church's information is kept separate at the deepest level of our database, enforced by the database itself, not just by careful code. A request for one church's data physically cannot return another's. It is on by default for every church, always.
Encrypted, coming and going
Every connection uses HTTPS, and we tell browsers to refuse anything unencrypted. Your data is also encrypted while stored on our servers, so the files are unreadable on their own.
Sign-in without passwords
We don't ask members to create a password, and we don't store one. People sign in with a one-time code sent to their email or phone, or with Google. There's no password database to be leaked or stolen.
You control who sees what
Not everyone on your team should see everything. Give each admin access only to the areas they need, so sensitive information stays visible only to the right people.
Your data, and your money, stay yours. You own everything you put in, and we never hold the money your church collects.
Your data belongs to your church
All member information, event records, and attendance belong to your church. We are a caretaker of it on your behalf, and you can export it any time. We never sell it or share it for marketing.
Payments never touch our servers
Payment is handled entirely by Stripe, certified to the highest level of card security (PCI DSS Level 1). Event payments go directly between the giver and your church's own Venmo or Zelle, so Churchday never holds the funds or sees card details.
Built on trusted infrastructure. Churchday runs on the same providers banks and hospitals rely on, each independently audited and holding its own security certifications.
- SupabaseDatabase & authenticationSOC 2 Type IIISO 27001
- Amazon Web ServicesCloud hostingSOC 2ISO 27001PCI DSS Level 1
- VercelApplication hostingSOC 2 Type IIISO 27001
- StripePayment processingPCI DSS Level 1SOC 2
- ResendEmail deliverySOC 2 Type II
- TwilioText messagingSOC 2 Type IIISO 27001
Automatic backups
Your church's data is backed up automatically every day, so it can be recovered in the unlikely event of a failure.
Children's information
When your church keeps records about minors, your church is the guardian of that information, and we give you the tools to manage and delete those records responsibly.
If you ever leave
Export your data first. After you close your account, we delete your active data promptly, and remaining copies in encrypted backups are purged as those backups rotate out.
Questions about security or privacy?
We want to hear from you, including if you spot a possible security issue.