Dhruv.AI is designed to collect less, keep sensitive information out of browser features, and use secure providers for authentication and transactional email.
How member access is protected
- Member passwords are managed by the authentication provider and are not stored in the website code.
- The site uses encrypted HTTPS connections and persistent sign-in sessions managed by the authentication provider.
- Access to the private login-activity area is limited by database access rules to the designated administrator.
- Browser protections limit which scripts, connections, frames, cameras, microphones, and locations the site may use.
What we deliberately do not ask for
Do not provide passwords, payment-card information, government identifiers, health information, private client documents, source code, or other sensitive information through ordinary email or the Studio Planner. The Studio Planner is a browser-only first-step tool and does not store its input.
Our data boundaries today
The current site uses member email addresses for authentication and records successful sign-in time for basic security administration. Contact, cohort-interest, and strategy-request forms open the visitor’s own email application rather than writing those answers into a public website database.
Responsible AI principles
Dhruv.AI encourages narrow, measurable AI experiments, approved source material, human review at consequential points, clear escalation paths, and continuous testing. These principles inform our Academy, Studio, and Advisory work; every client implementation still requires a context-specific assessment.
Report a security concern
If you believe you have found a security issue, please email hidhruvai@gmail.com ↗ with a clear description and enough information to reproduce it safely. Please do not access other accounts, alter data, or disrupt service while investigating.
Ongoing practice: Security is not complete at launch. Dhruv.AI should review access, dependencies, policies, and provider settings regularly—especially before adding payments, data uploads, AI APIs, or enterprise integrations.