Security

Last updated: 20. august 2026

This page is maintained by Brugtgrej I/S to answer common security and privacy questions about Brugtgrej.dk. It describes controls that are currently enabled — it is not an independent certification or audit report.

Access & authentication

  • Sign-in with email/password or Google.
  • Passwords are never stored in plain text; authentication is handled by our identity provider.
  • Administrative actions are restricted to a small number of named admins and moderators.

Data protection

  • Row-level access rules apply to every user-owned table in our database.
  • Sensitive operational fields (such as IP addresses) are only accessible to server-side admin code.
  • Traffic to and from Brugtgrej.dk runs over HTTPS.

Hosting & subprocessors

Brugtgrej.dk runs on managed cloud infrastructure with database, auth, and storage provided by our hosting partner. We also use Google for optional sign-in and for serving ads (only after consent). See our privacy policy for the full list and purposes.

Data retention & deletion

You can edit or delete your profile, ads and forum posts at any time from your account. To request a full account deletion, contact us via the link below.

Reporting a security issue

If you believe you have found a security vulnerability in Brugtgrej.dk, please write to us through our contact page or at kontakt@brugtgrej.dk using the subject "Security vulnerability". We treat such reports confidentially, acknowledge them within 2-3 business days and aim to provide an initial assessment within 7 days. We appreciate responsible disclosure.

See also our privacy policy, cookie policy and terms.