Trust Center
Effective Date: May 27, 2026
Last Updated: May 27, 2026
Star Mesh maintains an incident response and security management program designed to detect, contain, investigate, remediate, and recover from security incidents that may affect our systems, services, or customer data.
Security operations follow documented procedures and industry best practices to help protect the confidentiality, integrity, and availability of customer data and connected marketplace integrations, including Amazon SP-API.
Encryption
Data transmitted between Star Mesh, customers, and connected platforms is encrypted using TLS 1.2 or later.
Sensitive data is encrypted at rest using industry-standard encryption algorithms.
Access Controls
Access to production systems and customer data is granted based on the principle of least privilege. Administrative access is restricted to authorized personnel, authenticated using multi-factor authentication where applicable, and reviewed periodically.
Vulnerability Management
Security updates are applied using a risk-based process. Critical vulnerabilities are prioritized for remediation, while infrastructure and application components are monitored for newly disclosed security issues.
Incident Response & Security Management
Our incident response process is designed to coordinate detection, containment, investigation, remediation, recovery, notification, and post-incident improvement.
Continuous Monitoring & Threat Detection
Star Mesh continuously monitors application activity, infrastructure systems, authentication events, and API integrations using centralized logging, automated alerting, and proactive threat detection mechanisms. Suspicious or unauthorized activity is investigated promptly in accordance with internal incident response procedures.
Rapid Containment Measures
In the event of a suspected security incident, we initiate containment procedures as quickly as practicable to minimize impact. Depending on the nature of the event, this may include:
- Isolating affected systems or services
- Disabling compromised user accounts or API credentials
- Revoking access tokens and session access
- Blocking malicious traffic or unauthorized requests
- Restricting database or infrastructure access
Investigation & Forensic Analysis
Our team conducts detailed investigations to determine the root cause, scope, timeline, and potential impact of the incident. This includes forensic analysis of logs, affected systems, and data exposure risks including the potential exposure of customer data and connected marketplace integrations.
Remediation & Service Recovery
Following containment and investigation, Star Mesh performs comprehensive remediation and recovery actions, including:
- Applying security patches and infrastructure updates
- Rotating credentials, API secrets, and encryption keys
- Restoring systems from verified backups where necessary
- Validating system integrity and operational stability
- Strengthening affected security controls and monitoring rules
Notification & Escalation Procedures
Star Mesh maintains formal escalation and reporting procedures to ensure timely communication with relevant stakeholders. If customer data, marketplace integrations, or regulated information may be affected, we coordinate notifications in accordance with applicable contractual, legal, and platform requirements, including Amazon reporting obligations within required timeframes.
Post-Incident Review & Continuous Improvement
Following significant security incidents, we conduct a formal post-incident review to identify lessons learned and strengthen our security posture. This process includes:
- Documenting findings and response actions
- Updating internal security policies and procedures
- Implementing preventive and detective controls
- Enhancing monitoring and operational safeguards
- Conducting ongoing employee security awareness training
