Security and data
What the Armorify platform processes, and how far that goes:
What we assume
That the attacker has full control of the client machine and unlimited time with our binary. Nothing on the client side is treated as a secret meant to hold forever. Any design that only works until somebody looks inside gets thrown out.
What the client looks at
The protected game, what interacts with it and how, and enough about the machine to recognise it again. Everything is tied to a session and signed, and all data is additionally anonymised before it leaves the player's device.
What it never touches
No going through personal documents, unrelated folders or browsing history. No screen contents and no keystroke sequences.
Where the data goes
All collected data is processed by the Armorify platform alone; we do not share it with third parties.
Reporting a vulnerability
Write to the contact address with a description and a way to reproduce it. We review every report and reply within seven working days. We do not send lawyers at researchers acting in good faith.