Trust & Security

Security practices

CyberPrimer applies layered controls appropriate to a managed awareness and evidence platform for growing organizations.

Last reviewed July 31, 2026

Access and isolation

Business-email verification, expiring single-use codes, inactivity timeouts, server-side role checks, and organization-scoped queries protect portal records. Global Administrator-only actions are enforced on the server, not only hidden in the interface.

Recovery and accountability

Nightly full-site and organization-scoped backups, dated archives, integrity checks, guarded restores, safety snapshots, and audit events support recoverability and administrative accountability.

Data handling

Structured records are kept in managed platform storage and uploaded documents in protected object storage. Sensitive support content is discouraged, and downloads use private, non-cached responses where applicable.

Operational security

CyberPrimer uses input validation, prepared database statements, authorization boundaries, signed inbound-email verification, delivery logging, and restricted destructive workflows.

Responsible disclosure

Report a suspected CyberPrimer vulnerability privately to admin@insightbiztech.com with reproducible details and no unnecessary personal data. Do not access, modify, or retain information that is not yours.