Security and responsible disclosure
How to report a potential HumanTwin Bio security or data-protection issue.
Report responsibly
Use the public research inquiry form and select Platform partnership, then begin the objective with “Security disclosure”. Do not include participant data, credentials, access tokens, private keys or sensitive biological or clinical information in the initial submission.
Good-faith research
Do not disrupt service, access records without authorisation, alter data, perform social engineering, upload malware or attempt to retain access. Provide enough information for the team to reproduce and assess the issue safely.
Platform controls
HumanTwin Bio uses authenticated access, role-aware policies, organisation isolation, controlled transitions, audit events and evidence integrity controls. Security responsibilities remain shared with authorised organisations and infrastructure operators.