Built to a higher standard. Because we have to be.
We protect people who cannot afford to be exposed. Our security, privacy, and operational posture has to reflect that — and be auditable.
Certifications & frameworks.
Information security management system.
Trust services criteria audit underway.
Privacy information management extension.
EU General Data Protection Regulation.
Saudi Personal Data Protection Law.
United Arab Emirates PDPL.
How your data is protected.
Data minimization is the default.
We collect only what's required to operate the service. Nothing about you that doesn't directly inform protection.
Operational data retained 90 days, audit logs 7 years. Client-controlled deletion at any time.
Access, rectification, erasure, and portability — fulfilled within 30 days, no exceptions.
What we will never do.
Found a vulnerability?
We run a public bug bounty program with rewards for valid findings, and a coordinated disclosure window for sensitive issues.
- shield23.com / *.shield23.com
- portal.shield23.com
- api.shield23.com