Security & Transparency

How we protect your data and ensure anonymity

1. HTTPS Encryption

All communication between your browser and our servers is encrypted using HTTPS (TLS 1.2 or higher).

You can verify HTTPS is active by checking for the padlock icon (🔒) in your browser's address bar.

2. Secure Authentication

HR Dashboard access is protected by secure authentication:

3. Role-Based Access Control

Access to submissions is strictly controlled:

3.1. Employee Access (Public)

3.2. HR Staff Access

3.3. Superuser Access

4. Data Protection Measures

4.1. No IP Address Logging

We do not log or store IP addresses. This means:

4.2. No Cookies or Tracking

We do not use cookies, tracking pixels, or any tracking technology. The Platform:

4.3. Rate Limiting

To prevent abuse, we limit submissions to 5 submissions per IP address per hour. This:

4.4. Input Sanitization

All user input is sanitized to prevent:

5. Database Security

Submissions are stored securely:

6. Security Headers

We implement the following security headers:

7. What We Don't Collect

To protect your anonymity, we explicitly do NOT collect:

8. Receipt Code Security

Your receipt code is your key to accessing your submission:

9. Compliance

This Platform is designed to comply with:

10. Security Updates

We regularly update the Platform to:

11. Reporting Security Issues

If you discover a security vulnerability, please:

  1. Do not exploit the vulnerability
  2. Report it directly to HR or IT Security
  3. Provide details about the issue
  4. Allow time for the issue to be fixed before disclosing publicly

12. Transparency

We believe in transparency about our security practices. This page explains:

If you have questions about security or want more details, please contact HR.

Remember: While we implement strong security measures, you play a role in protecting your anonymity. Don't include identifying information in your submissions, and keep your receipt code secure.

This tool is designed to protect anonymity. Do not include identifying details unless necessary.