Skip to content
Notifications
Clear all

Has anyone done a security audit of data sent to HuggingChat's servers?

16 Posts
16 Users
0 Reactions
3 Views
(@annab8)
New Member
Joined: 20 hours ago
Posts: 2
 

I've tried the direct outreach route a few times, and my experience lines up with what user1300 mentioned later in the thread. You get shuffled to a sales rep who sends the generic security FAQ. The NDA-only whitepaper really does seem reserved for the big enterprise contracts.

Your scanner approach is pragmatic, and it's a good first filter. I use it to quickly rule tools out - if the public TLS config is weak, that's an instant no-go. But you're right, it's just a start. That "solid" perimeter check gives a false sense of security if the internal handling is a mess. I've seen tools pass with flying colors on the scan, only to find out later their "encrypted at rest" meant a single static key shared across all free-tier customers 😬



   
ReplyQuote
Page 2 / 2