Security & trust

Trust that comes
from architecture.

PlexWizz holds real operational data, conversations and payments. Isolation and ownership are enforced by the system — not promised in a paragraph.

Six pillars

What the architecture refuses to allow.

Tenant & business isolation

Every query, every socket, every login is bound to its owner's world — enforced at the application and database layer.

Access owned by the grantor

Agencies and businesses grant their own connections — and revoke them at any time, independently of us.

Nothing held hostage

Mail is read live from the owner’s mailbox — never stored beyond short-lived, self-clearing caches. Leaving means one-click export and complete erasure, guaranteed by database integrity rules.

Permission control

Granular roles on both sides — agency staff and business teams — with immutable owners against lockouts.

Auditability

Administrative actions are logged with who, what and when — reviewable and exportable.

Controlled integrations

Minimum scopes, encrypted credentials, and adherence to the Google API Services User Data Policy, including Limited Use.

Ownership

Their brand. Their business. Their data.

Sovereignty isn't a slogan here — it's how the system is built. Each environment belongs to its owner, and the infrastructure stays invisible.

A
The agency's environment
my.youragency.com
  • Its own white-label domain and branding
  • Its own team, roles and permissions
  • Its own Google & Meta access — granted and revoked by the agency itself
  • Full operational and financial data, private to the agency
B
Each business's environment
portal.theirbusiness.com
  • Its own portal, domain, logo and colors
  • Its own mailbox and payment accounts — connected by the business itself
  • A team the business manages entirely on its own
  • The owner holds the keys — no emergency door, no override; lost keys mean starting fresh
  • One-click export and complete, guaranteed erasure on exit
PlexWizz infrastructure — secure, isolated, invisible underneath.
The data boundary

Each side keeps what belongs to it.

The business's world and the agency's world touch only where growth needs them to. On exit, either side takes its data and leaves nothing behind — export in one click, erasure guaranteed by database integrity rules.

And the governing rule on top: changes to a business's accounts — budgets included — are proposed with evidence, and approved by the owner.

We adhere to the Google API Services User Data Policy, including its Limited Use requirements — see how access works and our Privacy Policy.

Infrastructure & resilience

Built to stay up — and to prove it.

We describe the guarantees, not the blueprints — what matters is what the system enforces.

Isolation by architecture
  • Every tenant's world, and every business's world within it, isolated at the application and database layer
  • Credentials encrypted at rest; all traffic encrypted in transit
  • Role-based access on both sides, with immutable owners against lockouts
  • Administrative actions logged — who, what, when
Resilience & accountability
  • Automated daily backups with rotation
  • Independent uptime monitoring, around the clock
  • Public status page — see it anytime: status →
  • Breach notification to affected customers without undue delay
Ready when you are

See it operating on your agency.