Skip to content
CBRT · DATA HANDLING

Privacy policy

This policy explains how Cybersecurity Blue & Red Team, S.R.L. (CBRT) handles the personal data you provide us through this portal. It is governed by the Dominican Republic's Law 172-13 on personal data protection.

What data we collect

Only what you type into our forms:

The portal does not use tracking cookies or third-party analytics. The only information stored in your browser is your theme preference (light or dark), which never leaves your device.

What we use it for

We don't use your data for any other purpose, we don't sell it and we don't share it with third parties for commercial purposes.

Where and for how long

Forms are delivered by email to CBRT's corporate mailboxes hosted on Microsoft 365. Delivery is handled through Azure Communication Services. There is no public database behind the portal: the portal does not store your data, it relays it.

Incident emails are kept in accordance with our case-management policy; bulletin emails, until you unsubscribe.

Confidentiality of an incident report

Incident information is treated as confidential and shared only with the CERT-CBRT staff handling it. We apply the TLP protocol for information exchange. If your report contains sensitive data, let us know: we can enable an encrypted channel before you send us evidence.

Your rights

You may request access, rectification, deletion, or objection to the processing of your data at any time, and unsubscribe from the bulletin from any issue. Write to Info@cbrt.com.do and we will respond.

Data controller

Cybersecurity Blue & Red Team, S.R.L.
Santo Domingo, Dominican Republic · UTC−4
Info@cbrt.com.do · (809) 817-3906

Changes

If this policy changes, we will publish the new version at this same address with its update date.

← Back to the portal · Last updated: August 7, 2026