Skip to content
HaveYa

Security

Security engineered into every stage.

As a software security company, HaveYa treats security, privacy, and operational reliability as core engineering โ€” not an afterthought.

Security is engineered into product design, development, deployment, and operation โ€” and verified at each stage, not assumed.

HaveYa products are built with least privilege, clear ownership, auditability, and responsible data handling as design requirements.

Security principles

How we approach it.

  • Minimise unnecessary data collection
  • Use secure defaults
  • Apply least-privilege access
  • Keep auditability in mind
  • Separate environments and secrets
  • Review dependencies and third-party services

Responsible disclosure

Found a security issue?

If you believe you have found a security issue in a HaveYa product or service, get in touch with a clear description, affected URL or product, reproduction steps, and any relevant evidence.

Please avoid accessing, modifying, or deleting data that does not belong to you.

Security contact

We review reports as part of our operational process. Please include enough detail for us to reproduce and assess the issue.