# NIVRA Safe — Operational Standard ## Priority risks Zero tolerance for minors, exploitation/trafficking, coercion, non-consensual media, account control against the depicted person's will, extortion, credible threats and identity fraud. ## Product controls in 1.2.0 - real age/identity verification before adult feed; - central vault reauthentication and audit logs; - private/public identity separation; - participant-consent workflow for multi-person media; - pre-publication moderation; - blocks and structured reports; - risk-first Master queue; - internal chat option so creators need not expose a phone number; - trusted devices, inactivity logout and 2FA; - protected media routes and viewer-linked watermarking; - no public map for creator locations; - regional-role restrictions; - opt-in Safety Session with encrypted coordinates and explicit central-team sharing choice. ## Safety Session limits Browser geolocation is a supplemental safety feature, not an emergency service. Updates can stop when the browser/tab/app is suspended or killed by the operating system. Do not market it as guaranteed continuous tracking. ## Production hardening before large scale WAF/CDN, automated encrypted backups with restore drills, independent pentest, malware/media scanning, stronger abuse-detection tooling, specialist KYC/age provider, centralized secrets management, operational on-call process, incident response and formal law-enforcement/legal-request workflow.