Our approach: minimization, defense in depth, access control and continuous improvement.
1. Security principles
The site is designed with a pragmatic security approach: encryption in transit, security headers, reduced external dependencies and limited data collection.
2. Responsible disclosure
If you identify a vulnerability involving the Norevia website, please provide enough technical information to reproduce or qualify the issue without accessing data that does not belong to you or degrading the service.
3. Report details
- affected URL or component;
- description and observed impact;
- reproduction steps;
- relevant technical evidence, excluding unnecessary personal information.