Trust, Security & Privacy
SHES-Q takes the protection of client information and visitor data seriously. This page summarises the controls and practices we apply across our website and engagements. It is maintained by SHES-Q and is not an independent certification.
Data we collect on this site
We only collect information you choose to share via our contact form (name, email, subject, message). We do not sell personal data. Submissions are stored securely and used solely to respond to your enquiry.
Security controls
- HTTPS/TLS encryption for all site traffic.
- Row-level security on our database with least-privilege access policies.
- Secrets stored in managed secret storage — never committed to source control.
- Server-side validation of form input to mitigate abuse and injection risks.
- Privileged backend functions restricted to trusted service roles only.
Client engagements
For consulting engagements we follow the data-handling and confidentiality terms agreed in the relevant statement of work. We can sign NDAs and align with client security policies on request.
Reporting a concern
If you believe you have found a security issue or have a privacy question, please email info@shes-q.ltd. We aim to acknowledge reports within 5 working days.
Your rights
You can request access to, correction of, or deletion of personal data you have shared with us by contacting the address above.
