How RedSec LTD approaches independent security review of its products and operations.
Effective: July 6, 2026
We subject our products and operations to independent security review to provide assurance to our professional customers.
Engagements are reviewed by independent third parties for hardware integrity, encryption implementation, and operational-security controls. Specific engagements are disclosed to customers under NDA.
Reviews cover the hardware intelligence layer, encryption and key management, secure command channels, and access controls to operator environments.
Findings are classified and remediated according to severity. Material findings affecting customer security are communicated to affected customers.
Our controls are mapped to recognized frameworks including ISO/IEC 27001 and UK GDPR. Certification status for a specific framework is confirmed during consultation.
SpyPhone hardware-modified devices are sold exclusively to vetted corporate, investigative, and compliance professionals for lawful monitoring of devices the purchaser is legally authorized to monitor. Use requires legal authority under the applicable jurisdiction. We do not sell for stalking, unlawful interception, or surveillance without consent where required by law. Every request is reviewed before procurement, and all sales are conditional on acceptance of our Legal Notice.