Secure coaching software
By Martijn Mauritz · Last updated 2026-09-06
What makes coaching software secure enough for sensitive client data?
It comes down to concrete questions: where the data lives, who can reach it, how that access is enforced, how it is protected in transit and at rest, and how you can end processing. Exantur answers them with EU hosting, database-layer row-level security so no one reaches data they are not authorized to see, TLS and at-rest encryption, multi-factor authentication, and AI that is opt-in and off by default.
Coaching conversations involve a level of personal disclosure that is unusual in professional contexts. The trust that makes that possible is the foundation of the relationship, and the software that stores it is part of the professional environment in which that trust must be maintained.
This page is about the security controls: how client data is accessed, protected and contained. For where the data physically lives, see EU-hosted coaching software; for GDPR obligations, data-subject rights and a Data Processing Agreement, see GDPR coaching software.
It is part of Exantur, coaching practice management software built for the practice of professional coaching, not adapted from a generic project management tool.
Who can reach client data, and how access is enforced
The core of coaching-data security is access, not slogans. In Exantur, access controls are enforced at the database layer through row-level security: a user cannot reach data they do not have explicit permission to see, regardless of how the access is attempted, because the rule lives in the database rather than only in the interface. Coach-private notes are never exposed through the coachee portal, and in a coaching organization each coach manages their own relationships while organization data is isolated at the organization level.
Encryption, and how the account is protected
Data is encrypted in transit with TLS and encrypted at rest. Encryption keeps data unreadable on the wire and on disk; the row-level access model above is what keeps one coach out of another coach’s clients. Account access is protected with multi-factor authentication, available to every user and required by default for organization administrators, so a leaked password alone is not enough to reach client data.

Optional AI, off by default
AI features are opt-in and off by default: nothing is sent to an AI processor unless a coach explicitly asks for AI assistance on a task, and only the relevant context is sent, under a data processing agreement, and it is not used to train the model. A coach can run their whole practice without any AI processing at all. See our AI coaching software page for how that is designed.
Where data lives, and ending processing
All data is stored and processed in the European Union (see EU-hosted coaching software for the residency detail). When you want processing to end, a deleted account has a grace period during which an accidental deletion can be reversed; after it, personal data is permanently and irreversibly removed, while billing records are kept only as long as tax law requires. Individual coachees can request an export or permanent deletion of their own data at any time. The GDPR side of this, data-subject rights, lawful processing and a DPA, is covered on our GDPR coaching software page.
How to evaluate any coaching platform’s security
Whatever tool you compare, the same questions separate a secure platform from a marketing page. Ask where the data is hosted and under whose jurisdiction. Ask who can reach client records, and whether that is enforced by the database or only hidden in the interface. Ask how data is encrypted in transit and at rest, and how accounts are protected beyond a password. Ask what happens when you want data exported or deleted. And ask what you can actually inspect: a Data Processing Agreement, a named sub-processor list, and alignment with GDPR Article 32 on security of processing. A vendor that can answer those plainly is one you can trust with a coaching relationship.
Frequently asked questions
- Can one coach access another coach’s clients?
- No. Access is enforced at the database layer with row-level security, so a user only reaches records they are explicitly permitted to see. In a coaching organization each coach manages their own relationships, and coach-private notes are never visible to coachees.
- Does Exantur support two-factor authentication?
- Yes. Multi-factor authentication is available to every user and required by default for organization administrators.
- Is coaching data encrypted?
- Yes. Data is encrypted in transit with TLS and encrypted at rest. Who can read it is separately controlled by row-level security.
- What happens to my data if I delete my account?
- A grace period lets you reverse an accidental deletion; after it, personal data is permanently and irreversibly removed. Individual coachees can request an export or deletion of their own data at any time. See our GDPR coaching software page for data-subject rights.
- Is Exantur HIPAA-certified?
- No. Exantur is built around EU data residency and the GDPR rather than HIPAA. For coaches and organizations whose priority is European data protection, that is the relevant standard.
Coaching software built for privacy
See how Exantur protects sensitive coaching data, request a demo.
