Legal
Last updated 1 August 2026
Enterprise buyers ask about our security posture before anything else. This page covers how this website is secured and how to report a problem. Engagement-level controls are covered in our contractual documentation.
Placeholder — pending legal review
This page describes our intended practices but has not yet been reviewed by counsel and is not a binding legal document. For anything contractual, please contact us directly.
This site is served exclusively over HTTPS with HTTP Strict Transport Security enabled, including subdomains and preload. It ships a strict Content-Security-Policy that blocks framing entirely, restricts script and style sources, and denies plugin content.
Additional headers in force: X-Content-Type-Options (nosniff), Referrer-Policy (strict-origin-when-cross-origin), Cross-Origin-Opener-Policy (same-origin), and a Permissions-Policy denying camera, microphone, geolocation, payment, and USB access.
This is a static marketing site. It holds no customer database, no authentication, and no user accounts. The only data collected is what you voluntarily submit through the contact form — see our privacy policy for detail.
Contact submissions are verified server-side with Cloudflare Turnstile, rate limited per IP address, and validated before delivery.
Dependencies are pinned and reviewed. Changes are gated in continuous integration on linting, type checking, a production build, and an automated accessibility scan before they can be merged.
If you believe you have found a security vulnerability in this website or any BintyByte product, please email us with the details and we will acknowledge receipt promptly. We ask that you give us reasonable time to investigate and remediate before any public disclosure, and that you avoid privacy violations, data destruction, or service degradation while testing.
We do not currently operate a paid bug bounty, but we credit reporters who ask to be credited.
For questions about certifications, data processing agreements, sub-processors, or completing a vendor security questionnaire, contact us and we will route you to the right person.