How we protect your data
Your most sensitive information — names, references, Will details, wallet data — is protected at every step.
Every sensitive field — your name, phone number, wallet references, Will details, tenant records — is scrambled into unreadable code before it's saved. Even if someone gained access to our database directly, they would see nothing but meaningless noise. Think of it like a safe where only Shaboodle's server holds the combination.
When we store your data, we press a unique mathematical seal onto it — like a wax stamp on an envelope. Every time we read it back, we check the stamp. If anyone has changed even a single character in the database, the stamp no longer matches and the system refuses to use that data. This isn't a software check — it's a cryptographic guarantee.
Legacy claim links, family invite codes and access tokens are never saved as-is. We convert them into a one-way fingerprint — like describing a key so precisely that no one can reverse-engineer the original from the description. Even if our database were read by someone, no token could ever be extracted or reused.
Every link to open a document is a signed, time-limited pass — like a dated museum ticket with your name on it. It works only for that specific document, only for you, and only for 5 minutes. A copied link, a guessed link, or an expired link all get rejected before any file is served.
Every document you upload — MOT certificates, insurance papers, title deeds, passports — is stored in a secure, encrypted vault that only you can access. Files are never publicly accessible. Every time you open a document, we generate a unique, signed link that works only for you and expires automatically after 5 minutes. Think of it like a safe deposit box: your documents sit locked away, and only you hold the key.
Every Shaboodle account has two-factor authentication enabled by default. After entering your password, we send a one-time 6-digit code to your registered email address — so even if someone knows your password, they still can't get in without access to your inbox. For even stronger protection, you can switch to an authenticator app (Google Authenticator, Authy, or any TOTP app) from Profile → Security settings. Authenticator codes work offline, rotate every 30 seconds, and are never sent over email.
Card numbers, reference numbers and other sensitive wallet details are hidden by default — even when you're logged in. Your account password must be confirmed before any sensitive value appears on screen. So if someone picks up your phone while you're logged in, they still can't see your NI number or card references.
Questions about how we handle your data? Get in touch