Miksumia FR | EN

Security policies

Publisher MIKSUMIA · “Miksumia Publisher” application · Last review: 6 October 2026

These policies describe what MIKSUMIA actually does today to protect the “Miksumia Publisher” application and its customers' data. MIKSUMIA is a one-person company. Vulnerability reporting and incident response are detailed on the security page.

1. Scope and governance

These policies cover the “Miksumia Publisher” application and the miksumia.com website. One person, the founder, owns security.

These policies are reviewed at least once a year and after any major change to the application. Last review: 6 October 2026. Our answers to the Cloud Security Alliance CAIQ Lite v4.1.0 questionnaire are published here: CAIQ Lite v4.1.0 (xlsx), and listed on the CSA STAR registry (STAR Level One, self-assessment).

2. Risk management

3. Access control

4. Encryption and secrets

5. Supplier management

MIKSUMIA uses two sub-processors:

They were chosen for their published security programmes. They are listed in the privacy policy. The list is reviewed at the annual policy review.

6. Business continuity and recovery

7. Vulnerability and incident management

The full procedure is on the security page.

8. Logging

9. Data retention and deletion

What is kept, and for how long, is described in section 7 of the privacy policy.

On uninstallation, the application first revokes the Google token. Atlassian then deletes the stored data after 28 days.

10. Workstation

The founder's computer runs Microsoft Defender and the Windows firewall, with automatic updates. Defender and the firewall were checked active on 5 October 2026. The screen locks automatically after 10 minutes of inactivity and asks for the password to resume (checked on 6 October 2026).