Security Statement

Last updated 2026-08-10 · Owner: Humans+ Security


Overview

We apply security controls appropriate to a public marketing website and protect the information you share through our forms.

Secure transport

This site is served over HTTPS with a valid certificate. We set security headers including content security policy, HSTS, frame protection, MIME sniffing prevention and referrer policy.

Form security

All forms use server-side validation, spam protection and rate limiting. We never expose secrets in client-side code and never collect credentials on marketing-site forms.

Sign-in boundary

Sign-in is handled through the authorised Humans+ identity boundary. This marketing website does not implement identity or session logic independently.

Reporting a vulnerability

If you believe you have found a security issue, please report it via the contact form selecting 'Security' as your interest rather than posting details publicly.