PRIVACY POLICY
HEXWOLF SECURITY • LAST UPDATED: AUGUST 2026
1. Overview & Data Philosophy
HEXWOLF SECURITY ("HEXWOLF", "we", "our", or "us") is committed to respecting user privacy and securing data processed across our cybersecurity platform, cyber range labs, and assessment services. Our primary tagline, THINK LIKE A WOLF. DEFEND LIKE A SHIELD., guides our strict approach to data minimization and defensive transparency.
2. Information We Collect
- Account Credentials: Email address, hashed password, display name, and optional avatar selections provided during registration.
- Authentication Telemetry: Single-use OTP verification state, OAuth provider tokens (Google, GitHub, LinkedIn), and session cookies required for authenticated access.
- Platform Activity: Lab session progress, CTF challenge submission attempts, and security assessment configurations.
3. How We Use Data
We process collected data exclusively to operate the HEXWOLF SECURITY platform, deliver single-use verification codes via transactional email, authorize access to cyber range lab sandboxes, and audit security telemetry. We do NOT sell user data or share personal information with third-party advertisers.
4. Data Storage & Security Controls
All user account data is stored within encrypted database clusters with strict identity isolation, single-use session tokens, and cryptographic password hashing. Authentication cookies utilize HttpOnly, SameSite, and Secure flags in production environments.
5. Contact Us
If you have questions regarding this Privacy Policy or wish to request account deletion, please contact our security team at security@hexwolfsecurity.com.