Security controls
Payment security
FLT's design objective is to keep full card numbers and card security codes out of FLT application databases by using authorised payment providers. Payment environments remain subject to the applicable PCI DSS scope and validation requirements.
Responsible disclosure
If you believe you found a vulnerability, email security@freestylelegends.bm. Do not access, alter, download or retain personal information beyond what is necessary to demonstrate the issue, and do not disrupt production services.
Assurance status
FLT maintains an active security-improvement and privacy program. No external certification, audit attestation or regulatory approval should be inferred unless FLT specifically states it in writing.