At LushVybes.com, we are committed to safeguarding your personal information and ensuring the integrity of our platform. This policy outlines the technical and procedural security measures we implement, along with recommendations for protecting your account, and our expectations for platform usage.
This policy is part of our Privacy Policy and complements our obligations under the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018.
1. General Information and Data Protection Measures
We implement industry-standard physical, technical, and administrative safeguards to protect your personal information from:
Unauthorised access or use
Loss or misuse
Tampering or unauthorised alteration
Destruction or breach
Our core security measures include:
TLS (Transport Layer Security): We encrypt sensitive data transmissions (e.g., tax and financial data) using TLS 1.2 or higher.
HTTPS-only traffic: All communications between your device and LushVybes.com are encrypted.
No storage of full credit card data: We never store or directly access full card numbers. Payment data is processed securely through compliant third-party gateways in line with PCI DSS standards.
CAPTCHA and Bot Detection: We use CAPTCHA and behaviour analysis to prevent automated login attempts, especially from suspicious IP addresses or repeated failed logins.
Access Control: Role-based access within our team ensures that only authorised personnel have access to user data.
2. Security Recommendations for Users
As a creator or customer, you play a vital role in safeguarding your personal data. We recommend the following:
Use a strong, unique password and update it regularly.
Enable multi-factor authentication (MFA), if available.
Avoid accessing your account on public Wi-Fi without a VPN.
Use a trusted password manager to generate and store your credentials securely.
Always log out from public or shared devices.
If you suspect unauthorised access to your account, please email security@lushvybes.com immediately.
3. Security Research & Responsible Disclosure
We value contributions from the security research community. If you believe you have discovered a security vulnerability on LushVybes.com, we encourage responsible disclosure by emailing security@lushvybes.com.
Your report should include:
A clear description of the issue
Steps to reproduce the vulnerability
Potential impact and suggested fix (if known)
We may offer rewards under our bug bounty programme, subject to review and adherence to responsible disclosure guidelines.
Please do not publicly disclose security issues until we’ve had an opportunity to address them.
4. Prohibited Security Threats & Misuse
To protect our users, systems, and data, we strictly prohibit the following activities:
Illegal Activities
Do not use our platform to engage in, facilitate, or encourage illegal acts as defined by UK law (e.g., Computer Misuse Act 1990, Data Protection Act 2018).
Abuse of Personal Information
Creators or users must not exploit, misuse, or distribute personal data gained via LushVybes.com for purposes unrelated to the platform.
Spam and Unsolicited Communications
Sending unsolicited marketing or advertising messages through LushVybes.com is prohibited under the Privacy and Electronic Communications Regulations (PECR) 2003.
Malware and Harmful Code
Do not upload or distribute any content that contains viruses, worms, trojans, or other malicious software.
Platform Abuse & Service Disruption
You must not:
Brute-force login attempts
Perform load testing or denial-of-service attacks
Degrade performance or accessibility for others
Data Mining or Scraping
Automated crawling, scraping, or indexing of user data or platform content is prohibited unless explicitly authorised by LushVybes.com.
Reverse Engineering
Do not decompile, reverse engineer, or otherwise tamper with our proprietary systems, code, or algorithms. For legitimate security research, reach out to join our approved vulnerability testing program.
5. Consequences of Security Violations
Engaging in any prohibited behaviour, security breaches, or violations of this policy may result in:
Immediate account suspension or termination
Reporting to legal authorities
Civil or criminal proceedings where appropriate under UK law
6. Contact Us
If you have questions about our security practices, or need to report a concern:
📧 Email: support@lushvybes.com
📍 Jurisdiction: United Kingdom – governed by the laws of England & Wales
By using LushVybes.com, you agree to comply with this policy and contribute to maintaining a safe and secure platform for all users.