App & device integrity
Firebase App Check validates genuine app traffic using Apple App Attest with DeviceCheck fallback and Google Play Integrity.
Perza uses layered controls from first launch through redemption to protect members, partners, and the integrity of every earning event.
Controls are applied before sign-in, while members earn, and before value leaves the platform.
Firebase App Check validates genuine app traffic using Apple App Attest with DeviceCheck fallback and Google Play Integrity.
Firebase authentication, Didit phone verification, phone uniqueness, and configurable country eligibility help keep access accountable.
Country, anonymizer, hosting-network, device, and account-velocity signals are evaluated server-side before access and redemption.
Partner callbacks—not the mobile client—are the authority for offer and survey rewards. Signed events and stable transaction IDs prevent duplicate credit.
Risk assessment, cancellation windows, manual holds, account-bound delivery, and provider reconciliation protect value at withdrawal.
Role-based admin access, visible risk reasons, audit events, and managed secrets support careful, traceable decisions.
Perza reconciles earning events to partner-supplied identifiers and supports reversals when a verified conversion is later invalidated.
Ask our team a security questionWe share the controls partners need to assess Perza while keeping detection thresholds, scoring logic, credentials, and signatures confidential. Security questions and responsible disclosures can be sent to support@perza.app.