Does Cyber Crucible comply with Brazil's LGPD?

Short answer: Cyber Crucible supports a controller's obligations under Brazil's Lei Geral de Proteção de Dados (LGPD) as an operator (processor) that processes on the endpoint and collects no customer content, credentials, or keys. Most LGPD obligations — legal basis, data-subject rights, transfer rules — have minimal surface because there is little personal data in its custody.

How it aligns

Vendor-selection notes

The ANPD has been increasingly active in enforcement and transfer guidance; on-premises deployment supports data-residency preferences. Cyber Crucible holds no Brazilian certification and supports the controller's duties. Documentation is available on request.


Revision #2
Created 2026-07-23 15:18:57 UTC by Dennis Underwood
Updated 2026-07-23 18:20:22 UTC by Dennis Underwood