Comrent
PrivacyTermsSecurityCookies
Back to Comrent
Trust & safety

Data & Security

Property information deserves careful handling. This page explains the safeguards and working practices used to protect Comrent customer data.

Effective 10 August 2026Last updated 12 August 2026
Comrent legalPrivacy PolicyTerms of ServiceData & SecurityCookie Policy
Security is a shared responsibility

We protect the Comrent platform and supporting systems. Customers protect their accounts, choose appropriate access permissions and review what information their teams add.

1. Our security approach

Comrent uses a combination of technical controls, operational practices and reputable service providers designed to preserve the confidentiality, integrity and availability of customer information. We review these safeguards as the service and relevant risks evolve.

2. Data in transit

Comrent uses HTTPS and modern transport encryption for information sent between supported browsers, the application and our service infrastructure. Customers should only access Comrent through official domains and keep browsers and devices up to date.

3. Access controls

  • Authentication and session controls are used to protect user accounts.
  • Workspace access is limited to authorised users selected by the customer.
  • Administrative access is limited to people who need it to operate or support the service.
  • Access may be reviewed or revoked when roles change or it is no longer required.

4. Application and operational security

Our security practices are designed to include dependency and change review, environment separation, secure configuration, logging, incident investigation and recovery planning appropriate to the size and risk profile of the service.

No internet service can guarantee absolute security. We prioritise material risks and continue improving controls as Comrent grows.

5. Backups and continuity

We use backup and recovery practices appropriate to the systems that support Comrent. Customers remain responsible for retaining any original records, source files or independent copies required by their business, contracts or law.

6. Service providers

Comrent relies on selected cloud, hosting, authentication, communications, support and AI technology providers. We assess providers in light of the information they process and use contractual or technical safeguards appropriate to their role. Provider details may change as the service develops.

7. AI-assisted processing

AI-assisted features process only the context needed to perform the task requested by the user. Customers should avoid entering information that is unnecessary for the task and must review generated outputs before use. Our Privacy Policy explains how this processing fits within our broader handling of personal information.

8. Incident response

We investigate suspected security events and take reasonable steps to contain, remediate and learn from confirmed incidents. Where a privacy breach is likely to cause serious harm, we will make notifications required by the New Zealand Privacy Act 2020.

9. What customers can do

  • Use strong, unique passwords and protect sign-in methods.
  • Give users only the workspace access they need.
  • Remove access promptly when someone leaves or changes roles.
  • Keep devices, browsers and email accounts secure.
  • Check imported data and AI-assisted outputs before relying on them.
  • Report suspicious activity promptly.

10. Report a security concern

If you believe you have found a vulnerability or security issue affecting Comrent, please report it privately to office@oioilab.ai. Include enough detail for us to understand and reproduce the issue, and do not access or disclose information that does not belong to you.

Comrent

Property management, with more time for what matters.

PrivacyTermsSecurityCookiesContact

© 2026 Comrent. A product of OIOI Lab.