Trust

Security.

What this site does, what the product has not yet documented, and what we refuse to claim.

We hold no security certification, and we are not claiming one. No ISO 27001, no SOC 2, no penetration test we can show you. If a badge on a vendor's site is what your review needs, we do not pass it today. Everything below is either verifiable from this page or marked as unestablished.

Where we stand

Proven here, unproven there.

Verifiable on this page

This website

Every line below can be checked by reading the page source. None of it requires you to take our word.

  • Third-party scriptsNone. Nothing is fetched from another origin
  • FontsSelf-hosted, so no IP is disclosed to a font CDN
  • AnalyticsNone loaded, and none chosen
  • CookiesOne, consent-gated, no identifier, six months
  • Form abuseHoneypot field and a timing gate, both live

Not established

The product

The console's security controls have not been documented to a standard we are willing to publish. These are exactly the rows an enterprise review scores, and we would rather show them empty than guess.

  • Encryption at restUnconfirmed
  • Access control modelUnconfirmed
  • Backups and recoveryUnconfirmed
  • Retention and deletionUnconfirmed
  • Penetration testingNone we can show

Two things worth knowing before a trial

The forms on this site โ€” contact, demo, support and hardware โ€” are not connected to a backend yet. Nothing submitted through them is transmitted or stored anywhere. That is a gap in the site, but it is also, for now, the strongest possible statement about what happens to what you type into it.

The console is a separate system from this site. It currently runs under a different name to the one on this site, which is being resolved. Raise it in your review โ€” it is a legitimate question and you will get a straight answer.

Reporting a vulnerability

If you find something, we want to hear it before your customers do. We will not threaten a researcher who acts in good faith, gives us reasonable time, and does not exfiltrate other people's data.

A monitored security inbox has not been published yet. Until it is, use the contact page and mark the message as a security report โ€” it will be routed by hand.