Security & Compliance

Confidentiality, access control, retention and clear operational boundaries.

Confidentiality

  • NDA available before exchange of sensitive materials.
  • Project access limited to assigned roles (RBAC-style need-to-know).
  • Deliverables shared through agreed channels only.

Storage & retention

  • Storage location and provider are confirmed in the SOW (jurisdiction-aware).
  • Encryption in transit (TLS); encryption at rest where the storage platform supports it.
  • Backups per hosting policy; retention period defined per project.
  • Deletion on request after project close, subject to legal hold and accounting requirements.

Logging

Access and delivery events can be logged for audit as agreed in the SOW.

Boundaries — what we do not do

We work with lawfully accessible sources and/or client-provided data. We respect applicable laws and contractual restrictions.

We do not:

  • hack or gain unauthorized access to systems;
  • bypass authentication or circumvent technical protections;
  • scrape or collect data in violation of applicable law or the client’s contractual limits;
  • provide services intended to enable unlawful surveillance or fraud.

Wording in proposals remains legally careful and scoped to the SOW.

Request an estimate

Describe sources, volume, format and timeline — we reply with scope and pricing drivers.

Request an estimate