Hattrick security ← connections
security and your data

Your data stays yours. We are built so it cannot leak.

Hattrick connects to the tools that run your business, so security is the whole job. Here is exactly how we protect your logins and your data, in plain language.

We never see your passwords

Every connection is a secure sign-in on the platform's own page. You log in there, they hand us a scoped token, and your password never touches us.

Read-only on day one

Agents read your data before they are ever allowed to act. Write access is granted later, per agent, by you.

Tokens encrypted and scoped

Access tokens are stored encrypted, given the least privilege a task needs, and you can revoke any of them from your own account at any moment.

Nothing happens without your yes

Every action an agent wants to take is queued for your approval. Sends are double-checked. Anything that ships can be reversed.

We pull only what a task needs

Data minimisation by default. An agent reads the fields its job requires and no more. We do not vacuum up your whole database for the sake of it.

Your data is isolated

Each client's data is scoped to their own account. It is never shared between clients and never pooled.

Every action is logged

A full audit trail of what each agent did, when, and the source it used. You can export it. Nothing happens off the record.

Revoke in one click, any time

Disconnect a tool whenever you like, from your dashboard or from the platform itself. Access ends immediately.

What we will never do

Ask for or store your passwords.
Sell, rent or share your data with anyone.
Use your data to train AI models.
Send an email, post or payment without your approval.
Mix one client's data with another's.
Keep access after you disconnect.

How a connection actually works

1
You sign in on their page
Shopify, Google or Meta's own login. We are never in the middle of your password.
2
You grant read-only access
A scoped token comes back to us, encrypted. You see exactly what was granted.
3
You stay in control
Every action is approved and logged, and you can revoke access in one click.

Where it runs: your hardware, your data

The most private setup is the one where your data never leaves the building. You choose how Hattrick is deployed.

Operator-run

We run the agents for you, connected securely to your tools over OAuth. The simplest way to start, with the same approval gates and audit trail.

On your own machine

The dashboard and the agents run locally on your own laptop. You make every connection on your machine, and the tokens never leave it. Hattrick's servers never see your data.

Your own 24/7 agent box

We install a dedicated, always-on Mac Mini at your premises. It runs every agent around the clock on hardware you own. Your data and your logins never leave the building. The most private setup there is.

How the agent box works

1
We install the box
A Mac Mini, configured with your agents, set up on your network. Use ours or a Mac you already own.
2
It connects locally
Every login is made on the box itself. Tokens and data stay on the machine, behind your own firewall.
3
It works 24/7
Agents run on a schedule around the clock. Your team opens the dashboard locally and approves the queue.

With the on-machine and agent-box options, Hattrick's servers never touch your data or your tokens. The agents talk straight from your hardware to your tools. We monitor the box and push updates, you own it.

For larger and regulated teams

Enterprise adds single sign-on, a signed Data Processing Agreement, agreed data-residency and audit-log exports. We handle your data in line with UK GDPR and work to the principle of least privilege throughout.

Secure OAuth sign-in Encrypted tokens Least privilege Read-only by default Approval gates Full audit log UK GDPR Signed DPA · Enterprise SSO · Enterprise Local-first option 24/7 on-premise agent box

Questions about security?

Ask anything before you connect a single account. We will walk your team through it.

Talk to us about security