Trust
Security
Report a vulnerability
Email security@complystandards.com with the steps to reproduce. We acknowledge within two working days, keep you informed, and credit you if you wish. Please do not access other people’s data, disrupt service, or publish details before we have fixed the issue.
How we protect systems
- HTTPS everywhere, security headers, and least-privilege access.
- Secrets kept out of code and rotated when people or systems change.
- Every release approved by a person, checked on the live system and rolled back automatically on failure.
- Encrypted nightly backups to separate off-site storage.
- Administrative access protected by a strong password and a second factor.
A machine-readable contact is published at /.well-known/security.txt.