UnifyID legal
Security & Vulnerability Disclosure
How UnifyID protects identity data and receives security reports.
Version 1.0Effective 31 July 2026
Security programme
- Encryption for sensitive systems.
- Least-privilege access, multifactor authentication, environment separation, and audit logging.
- Secure development, dependency management, monitoring, incident response, backups, and recovery testing.
- Short-lived authorization artifacts, explicit consent, replay defences, and credential rotation.
Report a vulnerability
Send a confidential report to support@verifynova.com with the affected service, reproduction steps, impact, and safe proof. Do not access other people's data, disrupt service, use social engineering, or publicly disclose an unresolved issue.