Security Hub
Defensive security guidance for document workflows. Plain-English for non-technical readers, deep technical references for advanced users.
- Office workers
- Whistleblowers
- General PDF users
- Journalists and support teams
- What Verified Processing Means (2026-03-14)
- CSP Exfiltration Analysis (2026-03-14)
- Residual Risk Disclosure (2026-03-14)
All security articles
Emergency Risk Steps
What to do first when you think your document-sharing identity may be exposed.
Journalist Submission Hygiene
Defensive submission habits that help sources and journalists reduce avoidable exposure.
Office Worker Secure Sharing
How to share policy, HR, legal, and finance PDFs with fewer accidental leaks.
Redaction Pitfalls
Common redaction mistakes and safer defaults before public or legal sharing.
Safe PDF Handling Basics
Plain-English habits that reduce accidental identity leaks when sharing PDFs.
What Verified Processing Means
Plain-language explanation of the green shield badge and what it proves about your privacy.
Whistleblower Quickstart
A beginner-safe, defensive workflow for people sharing documents under pressure.
CSP Exfiltration Analysis
Analysis of browser-based data exfiltration vectors and how CSP and VPE address each one.
Endpoint and Browser Leakage Model
Technical model of how endpoint state and browser context can break document anonymity goals.
Evidence Handling Chain
Technical integrity practices for preserving document credibility while reducing exposure.
Metadata Forensic Traces
Technical overview of metadata and structural traces that can persist in PDF workflows.
Network Model Limits
Where network privacy controls help and where they do not in document-sharing workflows.
Reproducible Build Verification Basics
Why reproducible client builds matter for trust and how to verify what you run.
Residual Risk Disclosure
Honest disclosure of what the VPE cannot protect against, with practical recommendations.
Threat Modeling Workflow
A practical model for deciding which controls matter for your document-sharing risk.
Verified Processing Environment (VPE)
Architecture of the VPE system that proves no data leaves the browser during PDF processing.