Security
Last updated: January 2026
Our Commitment
Security is at the core of everything we do. As a cybersecurity company, we hold ourselves to high standards in protecting our infrastructure, our customers' data, and the integrity of our platform.
Infrastructure Security
- Hosting: Our website is hosted on Cloudflare, providing DDoS protection, WAF, and global edge caching.
- Encryption: All connections are encrypted using TLS 1.3.
- Access Control: We follow the principle of least privilege for all system access.
Data Protection
- Payment Data: Payment processing is handled by Stripe. We never store credit card numbers on our systems.
- Form Submissions: Data submitted through our website is transmitted securely and processed with appropriate safeguards.
- No Tracking: We do not use third-party tracking or analytics services that follow users across the web.
Responsible Disclosure
We welcome security researchers who help us keep our platform safe. If you discover a security vulnerability, please report it responsibly.
How to Report
Email your findings to security@immuneos.io. Please include:
- Description of the vulnerability
- Steps to reproduce the issue
- Potential impact assessment
- Any supporting evidence (screenshots, logs)
Our Commitment
- We will acknowledge receipt within 48 hours
- We will provide updates on our investigation
- We will not take legal action against good-faith reporters
- We will credit researchers who help us (with permission)
Scope
The following are in scope for responsible disclosure:
- immuneos.io and related subdomains
- IMMUNE.OS platform APIs
- Authentication and authorization issues
- Data exposure vulnerabilities
The following are out of scope:
- Social engineering attacks
- Physical attacks
- Denial of service attacks
- Third-party services we use
Security Updates
We regularly update our systems and dependencies to address known vulnerabilities. Critical security updates are applied promptly.
Questions
For general security questions, contact us at security@immuneos.io.
For platform-related inquiries, visit our Contact page.