Security and data protection.
How your church’s information is stored and kept safe.

Churches trust Churchday with sensitive information about their members. This page explains how that data is stored, protected, and kept private, in plain language.

Walled off

Every church's data is isolated from every other's, enforced by the database itself.

No passwords

We never store a password. People sign in with a one-time code or with Google.

Cards never stored

Payments run through Stripe. Card numbers never touch our servers.

Your data stays yours

Your church owns its data. Export it anytime. We never sell it.

How your data is protected. The protections that matter most, on by default.

One church can never see another's

Each church's information is kept separate at the deepest level of our database, enforced by the database itself, not just by careful code. A request for one church's data physically cannot return another's. It is on by default for every church, always.

Encrypted, coming and going

Every connection uses HTTPS, and we tell browsers to refuse anything unencrypted. Your data is also encrypted while stored on our servers, so the files are unreadable on their own.

Sign-in without passwords

We don't ask members to create a password, and we don't store one. People sign in with a one-time code sent to their email or phone, or with Google. There's no password database to be leaked or stolen.

You control who sees what

Not everyone on your team should see everything. Give each admin access only to the areas they need, so sensitive information stays visible only to the right people.

Your data, and your money, stay yours. You own everything you put in, and we never hold the money your church collects.

Your data belongs to your church

All member information, event records, and attendance belong to your church. We are a caretaker of it on your behalf, and you can export it any time. We never sell it or share it for marketing.

Payments never touch our servers

Payment is handled entirely by Stripe, certified to the highest level of card security (PCI DSS Level 1). Event payments go directly between the giver and your church's own Venmo or Zelle, so Churchday never holds the funds or sees card details.

Built on trusted infrastructure. Churchday runs on the same providers banks and hospitals rely on, each independently audited and holding its own security certifications.

  • SupabaseDatabase & authentication
    SOC 2 Type IIISO 27001
  • Amazon Web ServicesCloud hosting
    SOC 2ISO 27001PCI DSS Level 1
  • VercelApplication hosting
    SOC 2 Type IIISO 27001
  • StripePayment processing
    PCI DSS Level 1SOC 2
  • ResendEmail delivery
    SOC 2 Type II
  • TwilioText messaging
    SOC 2 Type IIISO 27001

Automatic backups

Your church's data is backed up automatically every day, so it can be recovered in the unlikely event of a failure.

Children's information

When your church keeps records about minors, your church is the guardian of that information, and we give you the tools to manage and delete those records responsibly.

If you ever leave

Export your data first. After you close your account, we delete your active data promptly, and remaining copies in encrypted backups are purged as those backups rotate out.

Questions about security or privacy?

We want to hear from you, including if you spot a possible security issue.