Sécurité et protection

La sécurité est la raison d'être, pas une fonctionnalité.

CIND3R3LLA is a consent firewall: nothing is published unless its author asked for it. This page explains how that is enforced, and what the planned CSAM screening stage will and will not do.

CSAM & content screening (in development) En développement

This is where CIND3R3LLA is going, and it is not there yet. The design: every image and video is hashed at receipt, independently of consent, and compared against databases of known abuse material. A match is quarantined, encrypted, withheld from every public path and preserved for the authorities, never quietly deleted, because deleting a match destroys the evidence that makes a prosecution possible. Today the storage and quarantine machinery is built and no detection provider is connected, so no screening runs. Note the limit that will remain even once it does: hash matching detects known material only. It cannot detect new material, and a no-match result is not a statement that anything is safe.

Consentement
CSAM screen (planned)
Publication
Sans mot de passe

Passkeys (WebAuthn / FIDO2) : liés à l'appareil, résistants au phishing et à la force brute. Pas de mots de passe partagés, rien à divulguer ni à réutiliser.

Vos données restent les vôtres

Moindre privilège et isolation. Avec l'IA locale prévue, le filtrage et les conversations ne quittent jamais votre infrastructure, et il n'y a aucun sous-traitant tiers à qui faire confiance.

Signalement et retrait

Une deuxième ligne après le filtrage : n'importe qui peut signaler un contenu publié. L'opérateur le vérifie et le retire, et chaque action est consignée dans le journal d'audit.

Vous avez trouvé une vulnérabilité ?

Signalez-la de manière confidentielle via le contact sécurité du dépôt. Nous créditons la divulgation responsable et prenons chaque signalement au sérieux.

Politique de sécurité