Back to home

Security

ReportCore uses managed authentication, HTTPS, server-side database access, least-privilege table policies and request rate limits. Sensitive report passwords are salted and hashed rather than stored as plain text.

Finished HTML isolation

Imported HTML is kept unchanged and displayed in an isolated sandbox with a restrictive Content Security Policy. Preflight checks flag oversized files, embedded video, insecure resources and mobile overflow before publishing.

Reliability and recovery

Production health checks and mobile synthetic tests monitor public report delivery. Backups are uploaded only as encrypted database dumps and support a disposable restore drill.

Report a concern

Send security concerns to reportcore@buildhub.global with reproduction details. Do not include client report content unless required for diagnosis.

Last updated: July 17, 2026. Details may evolve as the product and hosting stack are updated.