allstarbids.com

Cybersecurity & AI Policy

AllStarBids Cybersecurity & Platform Integrity Policy

Effective Date: February 1st, 2026

AllStarBids (“we,” “our,” or “us”) is committed to maintaining the security of its platform, protecting user data, and ensuring the integrity of transactions. This policy outlines our approach to cybersecurity, data protection, and platform integrity.

1. Scope

This policy applies to:

  • All AllStarBids employees and contractors

  • All systems, networks, and applications

  • All user data and transactional information

2. Security Objectives

AllStarBids is committed to:

  • Protecting the confidentiality of user data

  • Maintaining system integrity

  • Ensuring platform availability

  • Preventing unauthorized access

  • Detecting and responding to security threats

3. Access Control

We enforce robust access measures including:

  • Role-based access controls

  • Multi-factor authentication (MFA)

  • Least-privilege access

  • Regular access audits

4. Data Protection

AllStarBids implements strong data safeguards:

  • Encryption at rest and in transit

  • Secure key management

  • Tokenization for sensitive payment data

  • Regular data backups

5. Network & Infrastructure Security

Our infrastructure protections include:

  • Firewalls and intrusion detection systems

  • DDoS mitigation strategies

  • Secure cloud configurations

  • Continuous vulnerability scanning

6. Incident Response

In the event of a breach or suspected incident:

  • Systems are immediately isolated

  • A full investigation is launched

  • Affected users are notified as required by law

  • Relevant authorities are notified when necessary

  • Post-incident remediation is conducted

7. Third-Party Risk

AllStarBids evaluates vendors to ensure:

  • Strong security posture

  • Compliance with applicable standards

  • Secure data handling practices

Contracts require explicit security and confidentiality provisions.

8. Employee Security

We require all employees to:

  • Complete security awareness training

  • Sign confidentiality agreements

  • Use secure devices

  • Report incidents immediately

9. Compliance

AllStarBids aligns with recognized standards and regulations, including:

  • PIPEDA (Canada)

  • GDPR principles (EU)

  • CCPA/CPRA (California, USA)

  • PCI-DSS standards via payment processors

10. Policy Review

This policy is reviewed annually and updated as cybersecurity threats and technology evolve.

AllStarBids AI Fraud Detection & Platform Integrity Policy

AllStarBids leverages AI-assisted tools and automated systems to enhance the integrity of its marketplace.

AI Use Cases

Our automated systems assist with:

  • Detecting abnormal bidding behavior

  • Identifying potential shill bidding

  • Flagging duplicate or suspicious listings

  • Monitoring transaction patterns

Human Oversight

  • All AI-generated alerts are reviewed by human moderators before enforcement actions are taken.

Limitations

  • AI tools support human judgment but do not replace it. Decisions regarding enforcement and account actions are ultimately made by human moderators.

This policy ensures robust protection of user data, system security, and platform fairness, while leveraging technology to maintain marketplace integrity.