Trust
Security
Copenhagen Bureau treats the confidentiality and security of client information seriously. Core — the workspace where client projects, files and communication live — is designed around controlled, authenticated access to that information, not open by default.
Access and isolation
Core requires an authenticated account before any client information is accessible — there is no client data reachable without signing in. Access is scoped by organisation: information belonging to one client is kept separate from every other client's, and what a signed-in person can see within Core is determined by their specific role and access grants, not simply by being logged in. Documents and files are stored privately and are only ever served through an authorised request — never a permanent public link.
How we work with data
We collect and use the information needed to deliver the work a client has engaged us for — through this website's contact form and, once a project begins, through Core. Full detail on what we collect, why, and for how long is set out in our Privacy Policy, which this page doesn't repeat.
Service providers
Operating this website and Core involves a small number of established service providers — for example, for hosting the underlying platform, processing payments and scheduling meetings. Which providers we use, and what each one does, is disclosed in our Privacy Policy.
Reporting a security concern
If you believe you've found a security issue affecting this website or Core, please contact us at hello@copenhagenbureau.com. We take reports seriously and will look into them.