Transparent, continuously maintained policies on how Plademy is protected.
The top-level information-security policy that governs how Plademy is built, run and maintained.
How Plademy captures, stores, protects and uses operational and security logs.
How Plademy's controls map to the OWASP Top 10 web application risks.
How Plademy manages risk in its third-party dependencies, services and infrastructure.
How Plademy detects, triages, contains, communicates and recovers from security incidents.
How Plademy restores service and data after disruption — backups, RPO, RTO and exercise plans.
How Plademy identifies, prioritises, fixes and verifies vulnerabilities in code and dependencies.
How long Plademy keeps personal data, how it is protected and how data subjects exercise their rights.
How Plademy builds, deploys, configures and maintains its infrastructure and software dependencies.