Paperlink Legal Center
Security & Trust
An overview of the controls, account practices and responsible-disclosure process used to protect the Paperlink platform.
1. Our security approach
Security is part of how Paperlink is designed and operated. We use layered controls intended to protect accounts, infrastructure, application data and service availability. No online service can promise absolute security, but we continuously work to reduce avoidable risk.
2. Account protection
- Use a unique password and do not share it with anyone.
- Keep recovery methods and email accounts secure.
- Review active sessions and connected services when those controls are available.
- Contact support promptly if you believe an account has been compromised.
3. Platform controls
Depending on the service and environment, security controls may include authentication, authorisation, rate limiting, encrypted connections, infrastructure isolation, logging, monitoring, backups and access controls. Controls evolve as the platform changes.
4. Responsible disclosure
If you discover a security vulnerability in Paperlink, please report it privately to support@paperlink.bio with the affected URL or component, steps to reproduce, potential impact and any relevant evidence. Do not access, alter or exfiltrate data that does not belong to you, and do not publicly disclose a vulnerability before we have had a reasonable opportunity to investigate.
5. Availability and incidents
We may temporarily restrict features or access to protect users, investigate abuse, perform maintenance or respond to incidents. Status, maintenance and incident communications may be provided through available Paperlink channels when appropriate.