How we protect the public website and client work, including limits of our current certifications.
This page describes how we protect the public website and client work. It is not a certification claim. We do not currently claim SOC 2, ISO 27001, PCI-DSS certification, or HIPAA compliance for the public marketing site.
We limit collection to information needed for inquiries, proposals, projects, billing, support, and security. Client data is handled under the applicable agreement and, where relevant, our Data Processing Addendum.
The public site does not collect payment-card numbers. If payment processing is used for clients, card data should be processed by a PCI-compliant payment provider rather than stored on our servers.
If we confirm a security incident affecting personal information or client data, we will investigate, contain the issue, preserve relevant records, notify affected parties when required, and cooperate with legal or regulatory obligations.
Please report suspected vulnerabilities to hello@amberfalconseo.com. Include steps to reproduce, affected URLs, browser/device details, and any logs or screenshots. Do not access, alter, delete, or exfiltrate data that does not belong to you.
Security is a shared responsibility and no system is perfect. This page describes our current public posture and intent. Specific client security requirements must be written into the applicable statement of work or security addendum.
AMBER FALCON LLC
Attn: Security
1421 N Heights Rd, Sheridan, WY 82801, USA
hello@amberfalconseo.com
+1 (912) 915-2404