Frequently asked questions

What Cloak Harbor is, what it is not, and how authorized client workflows stay bounded.

Is Cloak Harbor a people-search tool?
No. Cloak Harbor is a defensive Personal Exposure Defense control plane. It helps authorized operators reduce a consented principal's exposure. It is not a people-search engine, doxxing system, or public OSINT crawler.
Does Cloak Harbor use real data?
Only when a client or authorized operator provides it. Public fallback data is redacted, and protected workflows require backend operator authorization plus human approval.
What is StealthScore?
StealthScore is a rubric-driven posture score that converts validated exposure findings into a defensible 0–100 risk number plus a projected remediation delta. Scores are case-derived when client evidence exists and labeled as fallback calibration when not.
Can Cloak Harbor submit takedowns automatically?
Never. Draft notices stay in dry-run mode. Every external action requires explicit human approval, and automated drafts are clearly labeled.
How is access controlled?
State-changing API actions are gated server-side by the platform operator credential, which is never exposed client-side. Public views remain redacted and read-only.
What is SigReduce?
SigReduce is the open-core foundation: the exposure object schema, evidence model, identity graph structure, risk taxonomy, scoring rubric and redacted reference dataset. We do not open-source any personal-data scraper.
What happens if an optional provider is unavailable?
The system degrades to deterministic templates and clearly labels the fallback. It never fabricates provider output.