Trust
Security at Octane
We use practical safeguards to protect the information entrusted to Octane and continuously improve how our systems are designed and operated.
Last updated August 13, 2026
How we protect information
- Encryption in transit for website and service traffic.
- Restricted access to systems and data based on job responsibilities.
- Server-side handling of credentials and other sensitive configuration.
- Security-focused hosting controls, logging, monitoring, and software updates.
- Data minimization and use of established service providers.
Security is an ongoing process, and no technology can eliminate every risk. Our Privacy Policy explains how we handle personal information.
Report a vulnerability
If you believe you found a security issue affecting Octane or getoctane.ai, email security@getoctane.ai. Please include the affected URL or system, a clear description, steps to reproduce, potential impact, and any supporting evidence.
You can also find our machine-readable contact in security.txt.
Responsible research
When investigating a potential issue, please:
- Avoid accessing, changing, downloading, or deleting data that is not yours.
- Avoid disrupting services, degrading availability, or using social engineering.
- Use the minimum testing needed to confirm the issue.
- Give us reasonable time to investigate and address a confirmed issue before sharing it publicly.
What to expect
We review credible reports and work to address confirmed issues based on risk. This page does not create a bug bounty, promise payment, or authorize testing that would violate law or third-party rights.