Frequently asked questions
What Cloak Harbor is, what it is not, and how authorized client workflows stay bounded.
- Is Cloak Harbor a people-search tool?
- No. Cloak Harbor is a defensive Personal Exposure Defense control plane. It helps authorized operators reduce a consented principal's exposure. It is not a people-search engine, doxxing system, or public OSINT crawler.
- Does Cloak Harbor use real data?
- Only when a client or authorized operator provides it. Public fallback data is redacted, and protected workflows require backend operator authorization plus human approval.
- What is StealthScore?
- StealthScore is a rubric-driven posture score that converts validated exposure findings into a defensible 0–100 risk number plus a projected remediation delta. Scores are case-derived when client evidence exists and labeled as fallback calibration when not.
- Can Cloak Harbor submit takedowns automatically?
- Never. Draft notices stay in dry-run mode. Every external action requires explicit human approval, and automated drafts are clearly labeled.
- How is access controlled?
- State-changing API actions are gated server-side by the platform operator credential, which is never exposed client-side. Public views remain redacted and read-only.
- What is SigReduce?
- SigReduce is the open-core foundation: the exposure object schema, evidence model, identity graph structure, risk taxonomy, scoring rubric and redacted reference dataset. We do not open-source any personal-data scraper.
- What happens if an optional provider is unavailable?
- The system degrades to deterministic templates and clearly labels the fallback. It never fabricates provider output.
