






Last reviewed: July 6, 2026
A press release is a strange asset: worthless after publication, potentially market-moving before it.
Your unannounced funding round, acquisition or product launch sits on our servers before the world knows.
Here's exactly how we treat that responsibility.
All traffic to prdistribution.co — pages, forms, the API — runs over TLS (HTTPS).
Drafts and embargoed releases never travel in plain text.
Passwords are hashed with bcrypt via PHP's password_hash() — one-way, salted, never stored or logged in plain text.
Not by us, not by support, not anywhere.
If you forget your password, we reset it; we can't read it.
Three protections:
The free AI tools add rate limits and captcha to keep automated abuse off the platform you're sharing.
Card payments are processed by PCI-DSS-compliant payment providers.
Card numbers never touch our servers — we store only the order record.
Security isn't only infrastructure.
Every release passes AI checks plus human editorial review before publication — which means scams, malware links and impersonation attempts don't enter the network.
That protects readers, and it protects you: your announcement never shares a network with content that would embarrass it.
Scheduled releases stay private until their go-live time.
Access before publication is limited to the editorial staff who review them, under least-privilege access controls.
No pre-publication content is ever shared, indexed or used for anything except getting your release ready.
What's in place:
Found a vulnerability? We want it. Email [email protected] with "SECURITY" in the subject line:
What we collect and how to delete it is covered in the Privacy Policy.
The short version stands: your data is yours, and a human answers requests 7 days a week.