Security

How Jursu protects your data

Client files, hearing dates, and case notes are sensitive by definition. Here's exactly what protects them — in plain terms, not marketing language. Questions this page doesn't answer? Email [email protected].

Encryption

Every connection to Jursu — the web app, the mobile app, and the API behind them — runs over HTTPS/TLS, so data is encrypted in transit between your device and our servers. Your data is also encrypted at rest on our servers.

Authentication

Who can see your data

Jursu is built around firm-level isolation: a matter, client, or document belongs to exactly one firm, and only the lawyers you've invited to that firm can see it. Within a firm, roles (Admin, Associate, Junior, Consultant) control what each member can do — not everyone is automatically able to see or change everything.

Backups

The database is backed up automatically every day. Each backup is also copied off-site to separate cloud infrastructure, independent of the server Jursu runs on, so your data survives a full server failure — not just a database rollback on the same machine.

Infrastructure

The application applies standard HTTP security headers (protecting against common attacks like clickjacking and MIME-sniffing) on every response, and known-bad or abusive IP addresses are blocked at the network level before they reach the application at all.

Being direct about where Jursu is today: Jursu has not yet completed a third-party security audit or a formal certification like SOC 2 or ISO 27001. If that's a hard requirement for your firm, email [email protected] and we'll tell you plainly where things stand.

Your control over your data

Have a specific security or compliance question for your firm? We'll answer it directly.

Email [email protected] →