Cybersecurity & Privacy
As a company that collects and processes customer data, our key foundation is your trust. We protect your home energy system and personal data with rigorous security controls and transparent privacy practices.
Our Commitment to Security
At FranklinWH, we understand that your home energy system is a critical part of your daily life. Every product is designed with security at its core, protecting both your energy infrastructure and your personal information through comprehensive, multi-layered safeguards.
Secure by Design
Security is embedded in every stage of our product development. From initial design through manufacturing and deployment, and across years of operations, we embed multiple protection layers to safeguard your home energy system.
End-to-End Encryption
All communications between your FranklinWH System, FranklinWH App, and our cloud services are protected with strong cryptographic encryption. Your data remains secure in transit and at rest.
Regulatory Compliance
We maintain compliance programs aligned with applicable data protection laws including GDPR, CCPA, and PIPEDA, and adhere to U.S. data security requirements under the DOJ Data Security Program (EO 14117).
Multi-Layered Access
Security Architecture
Our defense-in-depth approach provides comprehensive protection across all FranklinWH System components, ensuring your energy system is secure at every level. Our multi-factor authentication, role-based controls, and secure credential management ensure only authorized access. The FranklinWH App uses secure authentication, regular updates, and mobile security best practices to protect your control interface.
Device & Network Security
A secure boot process and encrypted firmware protect aGates, Meter Adaptor Controllers, and aPower battery units, from unauthorized access. Hardware security modules and tamper detection provide physical layer protection. Firewalls with an end-to-end encrypted tunnel ensures that data cannot be eavesdropped on or maliciously modified by any third-party during transmission.
Cloud Infrastructure
Certified cloud infrastructure with redundancy, regular backups,and access controls ensures continuous availability and data protection.
Vulnerability Disclosure
We welcome collaboration with security researchers to identify and address vulnerabilities. If you discover a security issue, please report it to dataprivacy@franklinwh.com.
Privacy-First Principles
Your personal data belongs to you.
We are committed to complete transparency and give you full control over
your information.
Industry Certifications & Standards
ISO/IEC 27001
Information Security Management System Certification
- Our products and services meet international security standards.
- We maintain the highest level of customer data and privacy protection.
- We demonstrate a commitment to ongoing compliance and continuous improvement.
Compliance by Design
- Shift from "after-the-fact" to "design-in".
- Shift from "audit-based" to "continuous compliance".
- Shift from "reactive compliance" to "business value-driven".
Data Security and
Privacy Responsibilities
Installers must adhere to strict data security and privacy protection standards when handling customer data and during system installation.
Data Security Responsibilities
Installers must ensure that no customer personal data is leaked or illegally stored during on-site installation and commissioning. All customer information (Wifi passwords, account information, etc.) must be used only for installation purposes and deleted immediately after installation is complete.
Privacy Protection Requirements
When entering customer homes for installation and maintenance, installers must respect customer privacy and only access necessary areas. They must not photograph, record, or disclose any information within the customer's home. A confidentiality agreement is mandatory.
System Access Control
The installation tools and accounts used by installers must be linked to their personal work ID, and all operations must be audited. After installation is complete, the system default credentials must be reset, and all temporary access permissions must be removed.
Security & Privacy Incident Handling
Any security vulnerabilities, data leaks, unusual access, or privacy concerns discovered must be reported to the company's Legal and Security Compliance departments within 24 hours by email or phone. A detailed description of the incident, the time of occurrence, and the system of information involved must be provided.
Questions About
Security or Privacy
Our dedicated security and privacy teams are here to help address all concerns promptly and transparently.
Privacy questions
Data-related inquiries
Requests to access, modify, or delete your personal information
Report vulnerabilities or security concerns
Compliance inquiry
Please contact dataprivacy@franklinwh.com or call 1-888-837-2655.