Skip to content
Blackhole Cyberstrategy Book a fit call

Site policies

Privacy, accessibility, and security.

Short by design. A security advisory firm should be able to explain what it collects in a paragraph.

Last reviewed September 2026

Privacy

This site is operated by Blackhole Cybersecurity LLC, a Texas limited liability company doing business as Blackhole Cyberstrategy. This site sets no cookies of its own and runs no analytics or advertising. The home page keeps one flag in your browser’s session storage so the opening sequence plays once per visit; it is never sent anywhere and disappears when you close the browser. The fit check on the booking page runs entirely in your browser; your answers are not stored or transmitted. The booking calendar on that page is served by Microsoft Bookings inside an embedded frame and is not loaded until you choose to load it; Microsoft may set cookies within that frame under its own privacy statement.

When you send a request, your email client opens a pre-filled message. What you send arrives at [email protected] and is used only to prepare for and follow up on the call. It is not shared or sold.

Booking a time uses Microsoft Bookings, which processes the details you enter there under Microsoft's privacy terms. Web fonts are served by Google Fonts, which receives your IP address when the page loads. The site is hosted on Cloudflare Pages, which receives your IP address and request details in order to serve the page.

To have anything you sent deleted, email [email protected].

Accessibility

This site is built to meet WCAG 2.2 Level AA. Every page works with a keyboard alone, includes a skip-to-content link and visible focus indicators, uses semantic headings and landmarks, keeps text contrast above 4.5:1, and respects your reduced-motion preference.

The embedded booking calendar is provided by Microsoft. If it is difficult to use, the same booking page opens in a new tab, or you can request times by email.

If anything here is hard to use, email [email protected] with the page and what happened. Reports are answered within five business days.

Security & responsible disclosure

Found a vulnerability in this site or its domain? Report it to [email protected]. You will get an acknowledgement within two business days. Good-faith research that avoids data access, service disruption, and privacy violations will not be met with legal action.

Machine-readable contact details are published at /.well-known/security.txt.

Please do not send credentials, logs, reports, diagrams, or incident evidence through this site or by email. We will agree on a secure channel first.