사용자가 기록을 확인합니다
Subscriptions, amounts, currencies, and dates come from your input. TutuSub does not read bank transactions or present planning summaries as final invoices.
보안 및 데이터
관리 데이터, 연동 자격 증명 보호, 외부 요청 한도와 실패 후 시스템·사용자 책임을 설명합니다.
Subscriptions, amounts, currencies, and dates come from your input. TutuSub does not read bank transactions or present planning summaries as final invoices.
HTTP Pull 인증은 서버에서 AES-256-GCM으로 암호화됩니다. 유효한 마스터 키가 없으면 민감 정보 쓰기를 평문 저장 대신 명시적으로 거부합니다.
일반 webhook은 서명·시간을 확인하고 재전송 중복을 제거합니다. URL, 토큰, 비밀을 공개 코드나 채팅에 넣지 말고 노출 후 교체하세요.
HTTP Pull은 사설·loopback·link-local 대상을 막고 URL 내 자격 증명을 거부하며 redirect를 따르지 않아 SSRF 우회를 줄입니다.
Pull은 시간과 1MB 응답 제한, webhook은 256KB와 속도 제한이 있어 과도한 요청이 자원을 무한히 쓰지 못합니다.
연결 실패는 오류로 남고 이후 성공한 점검이 복구합니다. 수신 이벤트는 중복 제거되며 중단된 알림 전송은 백그라운드에서 회복됩니다.
Disabling or deleting a record in TutuSub does not cancel it at a registrar, SaaS vendor, cloud provider, or payment institution. Confirm every payment, refund, contract, and auto-renew change at the original service.