Security

Our Security Commitment

At CuriumLabs, security is not just a feature—it's a fundamental principle that guides everything we build. We implement industry-leading security practices to protect your data and ensure the integrity of our services.

Authentication & Access

  • Strong Password Requirements: 12+ characters with mixed case, numbers, and symbols
  • Two-Factor Authentication: Optional TOTP-based MFA for enhanced account security
  • WebAuthn/Passkeys: Modern passwordless authentication support
  • OAuth 2.0: Secure social sign-in with Google and Apple

Infrastructure Security

  • Encryption: All data is encrypted in transit (TLS 1.2+) and at rest
  • AWS Infrastructure: Hosted on AWS with enterprise-grade security controls
  • CloudFront CDN: Global content delivery with DDoS protection
  • WAF Protection: Web Application Firewall to block malicious traffic

Monitoring & Response

  • Real-time Monitoring: 24/7 security monitoring and alerting
  • Threat Detection: AWS Cognito advanced security for compromised credentials
  • Audit Logging: Comprehensive logging for security analysis

Responsible Disclosure

If you discover a security vulnerability, please report it to us at security@curiumlabs.com. We appreciate responsible disclosure and will work with you to address any issues promptly.