Security

Security at Clue Node

How we protect our products, our website and the people who use them.

Encryption in transit

All Clue Node websites and services are served exclusively over HTTPS, with HSTS enabled.

Secure authentication

Where products use accounts, credentials are stored using modern password hashing, and administrative access requires multi-factor authentication.

Software updates

Products receive maintenance updates, and published release notes document what changed.

Data handling

We collect the minimum data products need to work, and document it in the Privacy Center.

Download integrity

Desktop installers, when published, ship with SHA-256 checksums and code signing.

Least exposure

We do not publish infrastructure internals that would create risk; administrative systems are isolated from the public site.

Report a security issue

If you believe you have found a vulnerability in a Clue Node website or product, please email contact@cluenode.com with enough detail to reproduce the issue. Please do not use ordinary customer support channels for security reports, and give us reasonable time to remediate before public disclosure.

We appreciate responsible disclosure and will acknowledge every legitimate report. Machine-readable details: /.well-known/security.txt