Security & Digital Trust
Security is a pillar, not an afterthought.
A university that handles examinations, credentials, research and student data must protect every interaction. Below is an honest view of AquinTutor's security posture — what is active today, what is planned, and what is an ongoing infrastructure commitment. Identity, proctoring, access control and credential signing are self-built and running.
Active Planned Infrastructure / ops
Identity
- Multi-factor authentication Active
- Passkeys / FIDO2 (self-built WebAuthn) Active
- Biometric face verification Active
- Verified digital student identity Active
Academic integrity
- AI-assisted remote proctoring (advisory — a human decides) Active
- Continuous authentication during exams Active
- Browser lockdown where appropriate Planned
- Plagiarism & AI-content attribution Planned
Data
- Role-based access control Active
- Field-level encryption of sensitive data Active
- Encrypted backups Active
- Zero-trust architecture & data-residency controls Planned
Infrastructure
- Security response headers (HSTS, framing, CSP) Active
- API authentication & rate limiting Active
- WAF / DDoS protection Infrastructure
- Continuous vulnerability scanning & SOC Infrastructure
Credential trust
- Tamper-resistant, cryptographically signed digital credentials Active
- Public employer verification portal Active
- Verifiable digital transcripts Planned
Student safety
- Emergency / SOS response Active
- Well-being monitoring (privacy-safeguarded) Active
- Cyberbullying & harassment detection Planned
Research security
- Version-controlled repositories Active
- Secure research workspaces & controlled dataset access Planned
- Intellectual-property protection Planned
Verify a credential
Employers and institutions can confirm any AquinTutor credential is genuine and unaltered, using its cryptographic signature.