How we protect your data, your bids, and your business information.
All connections to LinenBids use HTTPS with TLS encryption. No data is transmitted in plain text.
Database-level policies ensure users can only access their own data. Customer data is invisible to providers, and provider bids are invisible to other providers.
Every page enforces HSTS, X-Frame-Options, X-Content-Type-Options, and Content Security Policy headers to prevent common web attacks.
Providers cannot see bids submitted by other providers. This is enforced at the database level, not just the application level.
Your company name and contact information are not shared with the winning provider until you award a bid. Before that, providers see only your location, industry, and item requirements.
LinenBids does not sell, share, or monetize user data. Your business information and bid data are used solely to operate the marketplace.
Every account requires email verification before accessing protected features. This prevents unauthorized account creation.
LinenBids uses Supabase Auth for identity management — the same infrastructure trusted by thousands of production applications.
Customers, providers, and administrators each have distinct permissions. Role escalation is blocked at both the application and API level.
LinenBids is hosted on Vercel with automatic HTTPS, DDoS protection, and global edge deployment.
Data is stored in Supabase (PostgreSQL) with automated backups, point-in-time recovery, and SOC 2 Type II compliant infrastructure.
Transactional emails are sent via Resend with DKIM, SPF, and DMARC authentication to prevent spoofing.
Contact us at support@linenbids.com