I could not find on the Opening Page any mention of the fact if your Saifu system is trustless or not. You repeat again and again that it is safe, but you don't mention if the customers have to trust you (like they would trust a bank) or if the system is trustless - as it is common and auspicable in the world of cryptocurrencies.
Greetings!
Regarding protection and safety: first of all, Saifu IS the first financial service that brings world-class security to the cryptocurrency world.
We use not just a HSM module, but
a combination of hardware and software technologies to deliver multi-layered security that does more to protect your Saifu account.
Our multi-layered security measures include:
- Data Encryption – to help protect sensitive information
- Web Application Firewall
- Hypervisor and Internal Firewalls
- Anti-Malware
- Anti-DDoS (Distributed Denial of Service)
- Intrusion Detection & Prevention Syst
- Security Patch Management
- Operating System File Integrity Monitoring
- OS Hardening
- Secure Awareness Training Programs – for Saifu employees
- Unified Security Management – using an advanced Security Information & Event Management (SIEM) system
- Secure Architecture, including Source Code Audits and Penetration Tests
- Access Rights Management
- Incident Response Plan
To store private keys we use a hardware device from Thales security, a similar solution is used in many banks. The keys are created inside the device, but they can not be architecturally copied. There is access to the key, access through several levels of smart card. Even with their use, you can not extract the key. In the application, authorization via fingerprint/selfie, protection by behavioral pattern. Authorization via the web: on the phone/mail displays a message - is it you are sending a payment? Special multi-colored qr-code. The transaction is signed with a digital signature of the person. Safety from WASCO.
As for trust: at the moment we have a Small Payment Institution (SPI) license, and we can carry out activities under this license. This license already implies a trusting attitude to both the bank. In the future, as the project develops, we will receive an Authorized Payment Institution / Electronic Money Institution license and a Commercial Bank license.
It will be, respectively, Saifu for business and Saifu for bank