Trust and security

A transparent registry with a hard evidence boundary.

Calvary Protect publishes masked, independently verified findings while keeping sensitive evidence, reporters, and reviewers private.

Antivirus gateway

ClamAV scans uploads before storage. Known malware is blocked, scanner failures fail closed, and archives remain quarantined after scanning.

Evidence security

Uploads are content-validated, executable formats are blocked, and clean preserved files use AES-256-GCM encryption.

Chain of custody

Every preserved file is recorded with a SHA-256 hash in an integrity manifest. Case decisions and exports carry an auditable timeline.

Continuous case intake

Protect validates and indexes submissions 24/7, identifies missing information, and queues complete cases without making an automated guilt decision.

Independent review

Serious findings, developer ownership claims, deny policies, and upheld appeals require separate reviewers where configured.

Scoped integrations

FiveM and service clients use individual HMAC secrets, route scopes, server binding, timestamps, and one-time nonces over HTTPS.

Privacy boundary

Public lists contain masked identifiers and two-reviewer findings only. Customer records, evidence, reporters, and reviewer identities stay private.

Two-reviewer authority

Signals and matching scores stay advisory. Only a supported verified leak/theft case with two distinct approvals can trigger bans in Discord servers that explicitly opted in.

Appeal-safe support

The official support guild gives verified subjects restricted appeal access and a private ticket with case metadata while withholding all evidence.

Staff-only evidence console

One-time Discord dashboard links and MFA-backed staff accounts unlock no-store evidence views. Every evidence access is integrity-checked and audit logged.

Device Security Center

Customers can name and revoke phones, tablets, and computers, track a self-reported security checklist, and scan files without hardware fingerprinting or location tracking.

Found a security issue?

Share it privately with support. Do not include unrelated personal data or public proof-of-concept abuse.

Contact support