Legal
Clear by design.
Current notices for this public website and the Bonsām product portfolio.
Trust and security
Learn how Bonsām protects information, manages service reliability and responds to security concerns.
Server-side request protection
The current public website does not retrieve visitor-supplied URLs or operate a URL proxy, webhook relay, remote importer or preview service. Browser connections are restricted to the Bonsām origin.
Future APIs, Workers and database functions that make outbound connections must use approved HTTPS destinations. They must reject user-controlled destinations, private networks, local services, cloud metadata addresses and unapproved redirects. Automated security checks flag outbound-request code for review before deployment.
Report a security concern
Report a suspected security issue privately to security@bonsam.africa. Do not include passwords, access tokens or sensitive operational data in the first message.
Accessibility
We aim to make Bonsām websites usable with keyboards, assistive technology and different screen sizes. Send accessibility feedback to accessibility@bonsam.africa.