Trust & Data Handling
How we handle
your information.
Cryptographic assessments touch sensitive parts of your business. Here's how we treat that responsibility — in plain language, not legal boilerplate.
Read-only by default
Our assessments rely on external scanning and read-only review. We don't require standing administrative access to your environment, and we don't make changes to your systems.
Your data stays yours
Assessment findings, scan results, and reports are shared only with you. We don't sell, share, or repurpose your information, and we delete working data on request after an engagement closes.
Clear scope, in writing
Every engagement begins with a written scope that defines exactly what we'll look at and how. Nothing happens outside what you've agreed to.
Minimal footprint
We collect only what an assessment genuinely needs. The less sensitive information that changes hands, the safer everyone is — that principle guides how we work.
Have a specific security or compliance question about working with us? Ask directly — we'd rather answer it up front.