CYBER3.AI
RO · EN · ES · IT · DE · FR · RU · ZH

Security & Compliance

How we protect the service and data — concise, without exposing operational details.

Operator: ROL PORTAL SERVICES SRL · CUI RO 36837313 · Reg. Com. J2016016379403 · ISO/IEC 27001:2022 · [email protected]

Defensive-only🇪🇺 EU sovereignty📋 NIS2⚖️ AI Act🧭 Governance & human-in-the-loop🔒 Discretion by design

Defensive posture

CYBER3 is exclusively defensive: detection, analysis, triage, remediation and hardening. We do not build or provide offensive tooling.

Sovereignty & data residency

Account and usage data are hosted in the European Union, on EU-resident infrastructure.

Encryption

Traffic encrypted in transit (TLS) and encryption at rest for stored data.

Access control & least privilege

Key/role-based access with least-privilege and environment separation.

Governance & human-in-the-loop

Sensitive actions go through human approval. Automation never touches the client's critical data paths.

Confidentiality & discretion

A client's data is never displayed or used in demos, materials or toward other clients. Discretion is a core principle.

AI safety

Ask CYBER3 runs with multi-layer guardrails and a strictly defensive scope; answers are grounded in evidence, with source citation.

Threat intelligence

We rely on the CYBER3 DATABASE — our proprietary threat-intel, continuously updated.

Compliance

GDPR-aligned; NIS2-ready; ISO/IEC 27001:2022 certified (ROL PORTAL SERVICES SRL).

EU AI Act compliance

ROL PORTAL SERVICES SRL declares compliance with the EU Artificial Intelligence Act (Regulation (EU) 2024/1689). Our AI systems are strictly defensive, with human-in-the-loop, transparency and governance; we use no prohibited practices and meet applicable obligations — including those for general-purpose AI models — in force from 2 August 2025.

NIS2 compliance

ROL PORTAL SERVICES SRL complies with the NIS2 Directive (EU 2022/2555): security risk management, technical and organizational measures, incident reporting and service continuity.

Authorization for scanning

External scanning is performed only on client-owned assets with verified ownership and authorization.

Responsible disclosure

Report a security issue to [email protected]. We respond promptly and in a coordinated way.

Sub-processors & continuity

Strictly necessary infrastructure/AI providers under a data processing agreement (DPA); backup and failover for continuity.

Service status → · Terms & Privacy

← Back to CYBER3.AI

Protejează-ți telefonul — CYBER3, gratuit pe Google Play
Instalează