Product · Security

Built to protect members' money.

Cooperative books hold members' hard-earned resources. Security isn't a feature — it's the foundation of the platform.

This page describes controls enabled today by CAMAG Technologies for the CoopTran platform. It is app-owner editable content and not an independent certification.

Access & authentication

  • Every user has an individual login; shared accounts are not permitted.
  • Passwords are hashed at rest and never transmitted in plain text.
  • Administrators manage user privileges from the Admin module (create, deactivate, reset).
  • Sensitive actions (postings, cheque writing, year-end close) are attributed to the acting user in the audit log.

Data protection

  • All traffic between the browser and the CoopTran servers is encrypted in transit (HTTPS/TLS).
  • Databases are backed up on a scheduled cadence with offsite retention.
  • Backups can be restored on demand by the society administrator.
  • Row-level data separation between cooperative societies on multi-tenant deployments.

Audit trail

  • Every ledger entry carries the acting user, timestamp, and source document reference.
  • Edits to posted entries are versioned — the original record is preserved for auditor inspection.
  • External auditors can be granted read-only, time-boxed access without touching source data.

Operational continuity

  • Hosted on managed infrastructure with monitoring and automated failover.
  • Incident contact: admin@camagtech.com.
  • Vulnerability reports welcomed at the same address; please include reproduction steps.

Shared responsibility

CAMAG Technologies operates the platform, patches infrastructure, and maintains backups. Each cooperative society is responsible for managing its own user list, protecting its administrator credentials, and reviewing its audit trail on a regular cadence.