This Cookie Policy explains how osmiumintelligence.cloud uses cookies and similar technologies.
1. What Are Cookies
Cookies are small text files stored on your device when you visit a website. They help the site function, remember preferences, and understand usage.
2. Cookies We Use
Strictly necessary cookies — required for the Site to function (e.g., security, load balancing). These cannot be disabled.
Analytics cookies — help us understand how visitors use the Site (pages visited, time on page, referral source) so we can improve it. Data is aggregated and not used to identify you personally.
We do not use advertising or cross-site tracking cookies.
3. Managing Cookies
You can control or delete cookies through your browser settings. Blocking some cookies may affect Site functionality. Where required by law, we will request your consent for non-essential cookies via a banner on your first visit.
4. Changes
Updates to this policy will be posted on this page with a revised date.
Contact: privacy@osmiumintelligence.cloud
SECURITY PAGE (public-facing, not a legal doc)
Security at Osmium Intelligence
Security isn’t a feature of Osmium — it’s the product. Here’s how we approach it, both for this website and for the platform we’re building.
Product Security Principles
- Data stays on your infrastructure. Osmium’s redaction runs inline on your own hosts. In self-hosted mode, raw log data never leaves your environment.
- Zero plaintext PII at rest. Redaction is enforced at the source, before logs reach aggregators or storage.
- Auditable by design. Every redaction event and every de-tokenization is logged and exportable for compliance review.
- Least privilege everywhere. De-tokenization requires explicit role-based authorization, and every reversal is attributed to an identity.
Compliance Posture
- SOC 2 Type II: in progress
- GDPR-aligned data handling practices
- India DPDP Act-aligned processing
Website Security
- All Site traffic is encrypted in transit via TLS
- Waitlist and contact data is stored with access controls and encryption at rest
- We collect the minimum data needed (see our Privacy Policy)
Responsible Disclosure
If you believe you’ve found a security vulnerability in our Site or product, please report it to security@osmiumintelligence.cloud. We commit to acknowledging reports within 72 hours. Please do not publicly disclose an issue before we’ve had a reasonable opportunity to address it. We do not currently operate a paid bug bounty program, but we credit researchers who report valid issues (with permissio
