Application security
Input validation, output encoding, CSRF protection, secure session handling, content security policy and restrictive browser security headers are baseline controls for this site.
We build security controls into the way our website, applications and managed services are designed and operated.
Input validation, output encoding, CSRF protection, secure session handling, content security policy and restrictive browser security headers are baseline controls for this site.
We collect only information needed to respond to enquiries and operate the site. Contact logs avoid storing a raw client IP address.
Our wider services and products are designed around monitoring, auditability, access control and traceable operational actions.
If you believe you have found a security issue affecting an AL Group service, contact us with enough detail to reproduce and assess the issue without accessing data you do not own.
Send a concise description, affected URL/service, reproduction steps and impact. Do not include unnecessary personal data.
Tell us what is not working, what you are trying to improve, or what you want to build next.
Subscribe for selected infrastructure, security, cloud and AL Group product updates. Confirmation is required before subscription becomes active.
Essential cookies protect forms, sessions and preferences. Optional first-party analytics help AL Group understand useful pages, searches and performance; analytics are disabled unless you accept them.