Security at Human Aspire

We signed the CISA Secure by Design pledge in March 2026, committing to demonstrate measurable progress across seven security goals within one year. This page tracks where each goal stands.

Last updated August 23, 2026. Schools, districts and partners evaluating us can request detailed security documentation under NDA.

Pledge signed
March 2026
Target
March 2027
Month 5 of 12

Seven goals. One year.

Each goal is part of the CISA Secure by Design pledge. We track status honestly — done, in progress, or planned.

1

Multi-Factor Authentication

Done
2

Default Passwords

Done
3

Reducing Vulnerability Classes

Done
4

Security Patches

Done
5

Vulnerability Disclosure Policy

Done
6

CVE Transparency

Done
7

Evidence of Intrusions

Done

To report a security vulnerability, please see our Vulnerability Disclosure Policy or email support@human-aspire.org.

Our CVE Issuance Policy sets out when we publish a CVE record and what each one contains.

For details on how we protect student and user data, see our Information Security Program.