1. Account Security
- Authentication is handled through managed identity flows with secure token-based sessions.
- Users are responsible for protecting credentials and controlling access to their organizations.
- Suspicious access should be reported immediately for review.
2. Infrastructure Safeguards
- Transport security is enforced using HTTPS for public endpoints.
- Operational logs and monitoring are used to detect abuse and service anomalies.
- Reasonable technical and organizational safeguards are applied to protect service data.
3. Responsible Reporting
To report security concerns, send details to security@ordinus.ai. Include reproduction steps, affected URLs, timestamps, and any relevant request identifiers where available.