Security
Last updated: January 1, 2026
Our Commitment to Security
Keeping your personal and payment information safe is something we take seriously at cessa. This page explains, in plain terms, the measures we have in place to protect the information you share with us.
Payment Security
All payments on our site are processed through a PCI-DSS compliant payment processor. Your card details are encrypted and sent directly to our processor, we never see or store your full card number, expiration date, or security code on our own servers.
Data Encryption
Our website uses HTTPS/TLS encryption to protect data in transit between your browser and our servers, including any personal information you enter in forms, such as checkout, our newsletter, or contact requests.
Access Controls
Access to customer information is limited to team members and service providers who need it to do their jobs, like fulfilling your order or answering a support request. We regularly review who has access to what.
Third-Party Providers
We work with reputable, established providers for payments, shipping, email, and analytics, each of which maintains its own security practices and is contractually required to protect any data we share with them.
What You Can Do
- Use a strong, unique password if you create an account with us
- Keep your device and browser up to date
- Be cautious of emails claiming to be from cessa. that ask for sensitive information, we'll never ask for your full card number by email
Reporting a Security Issue
If you believe you've found a security vulnerability on our website, we want to know. Please email us at contact@cessa.com with details, and we'll investigate as quickly as we can.
