What happens
when something breaks.
Written-down plan covering detection, triage, response SLAs, customer notification, the OAIC Notifiable Data Breach assessment path, and public communication via status.caltury.com.au. Founder-led, applied to every incident, reviewed annually or after any P0. Last updated 21 May 2026.
Detection.
Three independent signals make sure an incident does not sit silent. Founder receives every alert directly.
Triage classification.
Every incident is assigned a severity within one hour of detection. The severity drives the response SLA and the customer notification path.
Response SLAs.
Honest, founder-led commitments. The acknowledge clock starts when the alert is received in our channels (Sentry, security@, Supabase dashboard).
Caltury is a sole-founder operation. There is no rotating on-call. You get one named person on every escalation, not a 24/7 NOC. The 1-hour P0 acknowledge applies seven days a week and outside business hours, including weekends and public holidays.
Customer notification.
Notification timelines apply regardless of customer size. A Founding 5 practice gets the same clock as a larger account.
Notifiable Data Breach (OAIC).
Privacy Act Part IIIC compliance. The 30-day OAIC clock is treated as a hard ceiling; in practice the assessment is completed inside the first week.
Public status updates.
A live, founder-maintained status page so a customer never has to ask whether a slow page is them or us.
Post-incident review.
Every P0 or P1 ends with a written postmortem. The postmortem is shared with affected customers within 14 days, published if the scope justifies it.
How to reach us.
Caltury is run by founder Ben Horne. Every channel below lands directly in his inbox. The 1-hour P0 acknowledge applies 24/7.
Cover bound 15 May 2026.
The incident-response plan is backed by a bound cyber policy through DUAL (broker BizCover). First-party incident response, forensic, business interruption. Third-party privacy liability and regulatory defence. Certificates of currency available on request.
Email security@caltury.com.au.
Founder Ben Horne acknowledges P0 reports within 1 hour 24/7, everything else within 8 business hours. Coordinated disclosure preferred.