TRUOSTRAY
Menu

Contact

Talk to a person

Have a question, want to see whether Truostray fits your team, or need help with an account you already have? A person reads every one of these.

Sales and evaluation

Plans, pricing for the shape of your organisation, a trial that runs longer than a month, or a walkthrough with the people who built it.

Worth including

  • How many people, and which of the three plan shapes fits
  • The process you would move across first
  • Whether you need a single-tenant deployment, and in which region
Talk to us

Support

Something is not working, or is working in a way that surprises you. We answer our own support — there is no tier one.

Worth including

  • Your workspace name, and roughly when it happened
  • What you expected and what you got instead
  • Whether it affects one person or everybody
Get help

Security

A vulnerability report, a questionnaire to fill in, or a question the security page did not answer.

Worth including

  • For a vulnerability: what you found and how to reproduce it
  • For a questionnaire: send it over rather than paraphrasing it
  • For a question: the security page is the long answer, and we will give the short one
Report or ask

Where these actually go today

All three buttons reach the same place at the moment, and that place is a person rather than a queue. We have not published separate departmental addresses because we have not set them up, and listing three mailboxes that all forward to one would tell you something untrue about how big we are.

If the honest answer to your question is “not yet” or “no”, that is the answer you will get, with the reason.

Truos Tray / ត្រួសត្រាយPhnom Penh, CambodiaEmail: hello@truostray.comPhone: +855 93 933 676

Reporting a security issue

If you believe you have found a vulnerability, tell us before you tell anybody else and give us a reasonable chance to fix it. Send what you found, how to reproduce it, and what you think the impact is.

What we commit to. We will acknowledge your report, tell you what we intend to do about it, and credit you when it is fixed unless you would rather we did not.

What we ask. Test against your own workspace only. Do not access, modify or retain anybody else’s data — if you come across some while investigating, stop and tell us. Do not run denial-of-service tests or social-engineer our staff or our customers.

We will not pursue legal action against anybody acting in good faith within those limits. There is no paid bounty programme today; we would rather say that than imply one.

Before you write

The security page already documents what Truostray does not provide — no malware scanning, no multi-factor authentication, not end-to-end encrypted, and more. Those are known and published rather than undiscovered, so a report of one is not a finding.

Everything else, we want to hear about.

Report a vulnerability