Bank-grade encryption now protects your payment details
Vendor bank account numbers and account names are now encrypted at rest across the Centoffer platform, with secure lookups that never expose plaintext.
Your payment information is some of the most sensitive data you trust us with. As of this update, vendor bank account numbers and account names are encrypted at rest using application-level encryption — they are never stored as plaintext in our database.
To keep duplicate-detection and account uniqueness working without exposing anything, lookups run against a secure blind index (a keyed hash) rather than the raw value. That means the platform can still recognise a repeated account without ever reading the number back out in the clear.
Encryption keys are derived from a stable platform secret and are rotation-ready, so we can roll keys in the future without disrupting your data. Existing accounts were migrated transparently — there is nothing you need to do.
This is part of an ongoing investment in protecting partner data end to end. More security enhancements are on the roadmap.