← SecAgent

Privacy Policy

SecAgent™ may collect information submitted through contact, intake, payment-verification, and security-assessment workflows, including contact details, organization information, authorized target information, and security evidence.

Use

Information is used to respond to inquiries, scope services, deliver assessments, maintain audit records, improve services, and meet legal or contractual obligations.

Security Data

Clients should not submit production passwords, private keys, or unnecessary sensitive data through general contact forms. Dedicated credentials for authorized testing should be delivered through an approved secure process.

Retention

Production deployments should define retention periods for assessment evidence, client records, logs, and reports according to contractual and legal requirements.

Sharing

Client security information should not be sold. Disclosures may occur to service providers necessary to deliver the service, when authorized by the client, or when legally required.

Template Notice

This policy is a starter template and should be customized to actual SecAgent data practices and reviewed by qualified counsel before production use.