Security
Effective date: 9 July 2026
I Love Procurement is designed as a lightweight, static, browser-based utility site. Security and privacy are considered in the way the tools are structured: no account is required, no login credentials are collected, and calculator logic runs in the browser.
1. Secure Connection
The site should be accessed through HTTPS. HTTPS helps encrypt traffic between your browser and the website and reduces the risk of interception or tampering during transmission.
2. No Account Credentials
The site does not require user accounts, passwords, or procurement system credentials. Never enter ERP credentials, bank credentials, confidential passwords, or authentication tokens into any calculator or suggestion field.
3. Browser-Based Calculations
Tool calculations are performed client-side in your browser. The static calculator pages do not intentionally store calculation inputs on our servers.
4. Data Handling Caution
Do not submit classified information, trade secrets, supplier confidential information, personal data, bank details, contract-sensitive pricing, or regulated information unless you have authority and understand the risks of using public web tools.
5. Third-Party Services
The site may use hosting, analytics, advertising, or security-related third-party services. These services may process technical metadata necessary for delivery, measurement, abuse prevention, and advertising.
6. Vulnerability Reporting
If you believe you have found a security issue, report it using the Suggestion Box. Please include the affected page, steps to reproduce, browser information, and any relevant screenshots. Do not publicly disclose vulnerabilities before we have had reasonable time to review them.
7. Responsible Use
You must not attempt unauthorized access, automated abuse, injection attacks, denial-of-service activity, malware delivery, credential harvesting, or any action that may impair the site or its users.
8. Security Limitations
No internet service can guarantee absolute security. The site is provided without a security warranty. Users remain responsible for validating outputs and protecting sensitive business information.
Security model
The site follows a low-data security model. It does not require user accounts, passwords, saved supplier records, uploaded commercial documents, or ERP credentials. Calculator inputs are intended to be processed in the browser. This reduces the amount of business information that needs to be transmitted or retained by the website.
User responsibilities
Users remain responsible for deciding what information is appropriate to enter into a public web tool. Do not enter confidential bid details, personally identifiable information, trade secrets, classified information, payment data, passwords, authentication tokens, or contract-sensitive material unless you are authorized and understand the risk.
Security controls and limitations
HTTPS should be used to protect traffic in transit. The site may also rely on hosting provider controls, browser protections, and third-party services for availability, abuse prevention, and advertising delivery. No website can guarantee absolute protection against misuse, interception, malware on the user device, browser extensions, or third-party failures. If you identify a vulnerability, report it responsibly through the contact page and avoid public disclosure until it has been reviewed.
