Website infrastructure
The public website is a static Next.js export deployed through Cloudflare Pages. Cloudflare also provides authoritative DNS, HTTPS, content delivery, and associated network services for dotenum.com.
The website does not currently use a separate analytics, advertising, or session-recording service. Business enquiries are sent by email and are not submitted to a Dotenum website application server.
Access management
Dotenum currently operates with founder-controlled access to business email and the website’s administrative systems. Access to client environments is established only where required for the agreed work and should follow the client’s access requirements.
Specific identity, authentication, authorization, access-review, and offboarding requirements are agreed for each engagement. This page does not represent that every client environment uses one identical control set.
Secure development
Dotenum considers application architecture, data flow, validation, error handling, testing, dependency use, secrets, and deployment requirements as part of engineering delivery. The precise review, testing, and release process depends on the project scope and operating environment.
Credentials and production secrets should not be committed to public source repositories. Project-specific acceptance, deployment approval, vulnerability management, and maintenance responsibilities are documented in the relevant project arrangements.
Client information
Client information is handled according to the purpose and requirements of the individual engagement. Access, approved systems, storage, confidentiality, retention, deletion, and handover responsibilities should be agreed before production information is used.
Prospective clients should identify regulatory, contractual, residency, confidentiality, or security requirements during project discovery so that they can be reflected in the proposed architecture and written agreement.
AI technologies and data flows
Dotenum may develop solutions using OpenAI services or self-hosted models, depending on project requirements. The selected service, deployment location, infrastructure operator, permitted information, logging, access, and retention arrangements are determined for the engagement.
Public website enquiries are not automatically submitted to an AI model. A client project using OpenAI and a project using a self-hosted model can have materially different data flows and provider responsibilities.
Third-party services
Cloudflare and GoDaddy support the public website and business email respectively. Other external services may be used to deliver client work when appropriate. Their role, access, and contractual treatment depend on the project.
Dotenum does not claim that every project uses the same providers or that no information is ever processed by a third party.
Security concerns and incidents
Security concerns relating to Dotenum’s website or services can be reported to [email protected]. The founder monitors this mailbox and is responsible for reviewing and routing reports.
Dotenum assesses a report based on its nature, the affected system, applicable agreements, and legal requirements. No fixed response or resolution time is promised on this page. Please do not include exploit code, credentials, or unnecessary personal information in an initial report.
Project-specific security enquiries
Prospective clients can discuss infrastructure, confidentiality, access, AI-provider, data-location, retention, testing, and handover requirements before a project begins. Agreed commitments are recorded in the relevant written project documents.
This page is a factual overview and is not a certification or audit report. Dotenum does not claim ISO 27001, SOC 2, or another security certification on this website.