Security claims should be specific, reviewable, and current.
This overview describes the controls used to protect the Leama service without claiming certifications that have not been independently verified.
Last updated 16 August 2026
Platform safeguards
- Encrypted HTTPS connections for public website and application traffic.
- Managed authentication and session controls for user accounts.
- Restricted production access and secret handling through infrastructure providers.
- Application and infrastructure health monitoring, operational logs, and incident investigation.
- Backups and recovery procedures appropriate to the managed services in use.
Account security
Use a unique password or supported identity-provider controls, protect access to your email account, remove users who no longer need access, and report suspicious activity promptly.
Responsible disclosure
If you believe you found a vulnerability, email jessy@prospactive.nl with the affected URL, reproduction steps, and impact. Do not access other users' data, disrupt the service, or publish details before remediation can be coordinated.
Incidents
Prospactive B.V. investigates confirmed security incidents, contains affected systems, restores service, and provides notifications where a contract or applicable law requires them.