Data Protection

Privacy Policy

Last Updated: February 23, 2026

1Data Collection Architecture

CyberFortress operates on a zero-trust, privacy-first architecture. When you register via our NextAuth portal, we collect only strictly necessary cryptographic identifiers, including your hashed credentials, professional email, and designated role (Client or Consultant). We do not store plaintext passwords under any circumstances.

2Telemetry & Anomaly Detection

To provide real-time threat neutralization, our platform ingests network telemetry from your linked endpoints. This data is strictly sandboxed, anonymized in transit using AES-256 encryption, and is automatically purged from our Prisma-managed databases after 90 days in compliance with international retention standards.

3Third-Party Integrations

If you authenticate using external providers (such as Google OAuth), we process your public profile data solely for session validation. CyberFortress will never sell, lease, or distribute your corporate telemetry or personal data to unauthorized third-party marketing entities.

4Your Access Rights

Under modern data protection frameworks, you maintain absolute sovereignty over your digital footprint. You may request a complete export of your SOC activity logs or demand full cryptographic deletion of your account from our Supabase clusters at any time via your Client Dashboard.

Ready to secure your network with peace of mind?

Return to Homepage