Skip to content
StarHub

Security and compliance

What I send when a security questionnaire arrives. No generic statements — the concrete mechanisms behind each application.

Where the approach comes from

The applications in StarHub are built to the practices of regulated software: medical devices under IEC 62304, clinical systems under GxP and FDA 21 CFR Part 11. In those domains an incomplete audit trail is not a medium-priority bug — it blocks release. The same requirements underpin every product here, including where regulation would not demand them.

Got a security questionnaire?

Send it over and we will fill it in with concrete technical detail rather than reassuring phrasing.

Contact