The Augur RoomThe Augur RoomBack

Legal & governance

Security practices

The controls the operator commits to maintaining. These describe practices, not certifications.

Access and separation

Every user has an individual account. Records are owner-scoped at the database layer — a signed-in user reaches only their own material and what is deliberately shared with them. Administrative capabilities sit in a separate role and are never granted by default.

Encryption and backups

All traffic uses TLS. Stored data and uploaded files sit on managed infrastructure with provider-level encryption at rest and scheduled backups.

Incidents and reporting

Suspected incidents are triaged and investigated; affected customers are notified without undue delay. Report vulnerabilities through the enquiry form or the contact below — include reproduction steps, avoid accessing data that is not yours, and allow reasonable time to remediate before disclosure.