Your Data Security Is Non-Negotiable
We built LegacyLeaps with security-first principles. Here's exactly how we protect your files.
Self-Service: 100% Local
Files never leave your computer. LegacyLeaps runs entirely offline. No telemetry, no cloud sync, no data collection.
Done-For-You: Encrypted Transfers
All file transfers use 256-bit TLS encryption. Files are transferred via encrypted channels only.
Zero Data Retention
After your migrated files are delivered, all originals and copies are permanently deleted from our systems. We retain nothing.
No Third-Party Access
Your files are never shared with, processed by, or accessible to any third party. Migration is performed by the LegacyLeaps owner directly.
Secure Delivery
Migrated files are returned as password-protected encrypted zip archives. Passwords are communicated separately from file delivery.
File Lifecycle
Upload → stored in encrypted workspace → migration performed → results packaged → delivered → all copies permanently deleted within 48 hours of delivery confirmation.
Security FAQ
Who performs my migration?
The LegacyLeaps owner personally performs every done-for-you migration. No offshore teams, no subcontractors.
Can I use LegacyLeaps without sending you my files?
Yes. The self-service tier runs 100% on your own machine. Your files never leave your computer.
How do I know my files were deleted?
All files are permanently deleted within 48 hours of delivery confirmation. You can request immediate deletion at any time by emailing support@legacyleaps.com.
What about compliance (HIPAA, SOC2, etc.)?
Honest answer: we're a specialized migration tool, not a compliance-certified platform. For regulated data, we recommend the self-service tier so files never leave your environment.
Is the free online scan secure?
Yes. Files uploaded to the free online scan are transmitted over 256-bit TLS encryption, processed in an isolated environment, and permanently deleted immediately after scanning. Scan results (issue descriptions only, not your files) are stored for 30 days so you can revisit your report, then permanently deleted.
Does the scan read my actual data?
No. Our scanner reads only file structure metadata — format headers, VBA module signatures, connection strings, ActiveX control references, and provider declarations. We never read, access, or store your table rows, field values, cell contents, or any business data inside your file. The scan would produce the same results on a file full of dummy data.