Security
Last updated: 20. august 2026
This page is maintained by Brugtgrej I/S to answer common security and privacy questions about Brugtgrej.dk. It describes controls that are currently enabled — it is not an independent certification or audit report.
Access & authentication
- Sign-in with email/password or Google.
- Passwords are never stored in plain text; authentication is handled by our identity provider.
- Administrative actions are restricted to a small number of named admins and moderators.
Data protection
- Row-level access rules apply to every user-owned table in our database.
- Sensitive operational fields (such as IP addresses) are only accessible to server-side admin code.
- Traffic to and from Brugtgrej.dk runs over HTTPS.
Hosting & subprocessors
Brugtgrej.dk runs on managed cloud infrastructure with database, auth, and storage provided by our hosting partner. We also use Google for optional sign-in and for serving ads (only after consent). See our privacy policy for the full list and purposes.
Data retention & deletion
You can edit or delete your profile, ads and forum posts at any time from your account. To request a full account deletion, contact us via the link below.
Reporting a security issue
If you believe you have found a security vulnerability in Brugtgrej.dk, please write to us through our contact page or at kontakt@brugtgrej.dk using the subject "Security vulnerability". We treat such reports confidentially, acknowledge them within 2-3 business days and aim to provide an initial assessment within 7 days. We appreciate responsible disclosure.
See also our privacy policy, cookie policy and terms.
