Trust & Safety
Security
Security is built into every layer of Dukfins Services. We use multiple safeguards to protect your profile—and we recommend a few best practices to keep you safe.
Profile protections
Encryption & monitoring
Fraud response
1. Platform safeguards
- Secure sessions: We use secure session handling and automatic timeouts where appropriate.
- Monitoring: We monitor for suspicious activity and access patterns.
- Rate limiting: Controls are used to reduce brute force and abuse.
- Change alerts: Notifications may be triggered for sensitive actions.
2. Profile security
We recommend the following security controls for every profile:
- Use a strong, unique password (12+ characters).
- We are currently developing enhanced authentication features, including multi-factor options, to further protect your profile.
- Review login activity and connected devices regularly.
- Never share OTP codes, passwords, or recovery links.
We will never ask for your OTP
Dukfins Services support will never ask for your password or one-time passcodes. If anyone asks, treat it as fraud and report it immediately.
3. Fraud prevention
Common fraud we help protect against includes:
- Profile takeover attempts
- Phishing and social engineering
- Unauthorized profile access and fraudulent transfer attempts.
- SIM swap attempts
4. Data protection
| Area | Safeguard | Purpose |
|---|---|---|
| Encryption | Transport Layer Security (TLS 1.2+) and AES-256 storage encryption | Protect data in transit and secure stored information from unauthorized access |
| Access control | Least-privilege access, internal audits, and robust review processes | Ensure only authorized internal systems and personnel can access sensitive data |
| Operational security | Real-time monitoring, automated alerting, and incident response protocols | Proactively detect and rapidly respond to potential security threats |
5. What you can do
- Verify the site URL before signing in.
- Keep your device and browser updated.
- Use a trusted network when possible.
- Be cautious of links or attachments in unsolicited messages.
6. Report an issue
If you suspect fraud or unauthorized access, contact us immediately: support@dukfinsservices.com or via Contact.