Security by scope
Threat model, access control, key management, smart-contract risk, dependency review, logging and environment separation are defined against the actual solution.
Use this page as the starting point for procurement, security, data-protection and delivery-governance discussions. Specific contractual commitments are agreed per engagement.
Threat model, access control, key management, smart-contract risk, dependency review, logging and environment separation are defined against the actual solution.
Data minimisation, roles, retention, lawful processing and appropriate off-chain/on-chain boundaries are considered during architecture and delivery.
Decision rights, network participation, upgrade authority, incident ownership, release gates and operational responsibilities are made explicit.
Version control, peer review, testing, acceptance criteria, staging and controlled release processes can be incorporated into statements of work.
Architecture artefacts, implementation notes, operating procedures, training materials and handover documentation can be included in delivery scope.
Support windows, response expectations, monitoring and maintenance requirements are defined contractually where managed services are purchased.
Rather than publishing generic claims, we prefer to provide evidence appropriate to the engagement and procurement stage.
This public page does not claim certifications, insurance levels, named customers, partner statuses or service-level commitments that have not been independently verified for the specific engagement.
Open due-diligence request →