Trust
Security
Last updated: 4 October 2026
You trust us with personal things: your photos, your conversations, where you go. Keeping them safe is part of building Besito, not an afterthought.
How we protect your data
- Encryption in transit. All traffic between the app, besito.in and our servers uses HTTPS (TLS).
- Access rules in the database. Row-level security means members can only read and change what they're allowed to: your private data stays yours.
- Private storage for verification selfies and voice notes, which are never publicly accessible. Chat voice notes are deleted after they're played.
- Location minimisation. Other members never see your exact location. Raw location pings are deleted after 24 hours, and the Around You Bluetooth ID changes every 15 minutes.
- Limited team access. Only authorised team members can use our admin tools, which are protected by an extra sign-in layer. Sensitive actions, including opening a chat, are logged.
- Data in India. Our main database and file storage are hosted in Mumbai.
What you can do
- Keep your Google account secure with 2-step verification, since you sign in to Besito with it.
- Keep the app updated; updates include security fixes.
- Never share codes, links or personal details with someone you met on Besito who asks for them.
Report a security issue
If you think you've found a security vulnerability in Besito, please email [email protected] with the subject "Security report", including steps to reproduce it. Please:
- give us reasonable time to fix it before telling anyone else;
- only use test accounts you own, and don't access, change or delete other people's data;
- don't run denial-of-service, spam or automated scanning against our services, and don't use social engineering.
We'll acknowledge your report, keep you updated, and won't take legal action against good-faith research that follows these rules.
For account problems that aren't security bugs, such as a reported profile or a lost login, email [email protected].