Testing mode: Use synthetic information only. Live client information is not yet approved.

Plain-language information

Privacy & safeguards FAQ

Foundation draft · September 6, 2026. Final legal and service terms require approval before use with client information.

What is CAL Threat?

A client-controlled behavioral concern intake and triage workspace. It is separate from CAL TTX and is not an automated threat assessment, emergency reporting service, clinical tool, forensic evidence system, or replacement for your case-management process.

Who controls a case?

The client organization directs case access, sharing, and retention. CPPS operates the application but does not receive routine case access. Expert review requires the client to intentionally share a defined package.

Does CAL Threat assign a risk score or threat level?

No. CAL Threat does not score or rank cases, diagnose people, determine credibility, or choose a risk level. An authorized human may document the organization’s own structured professional judgment and supporting narrative.

What information should stay out?

Never upload CSAM, clinical or medical records, sexual or intimate imagery, graphic harmful media, credentials, malware, or raw forensic collections. Use a brief, non-graphic, source-attributed description or a non-clickable reference to an authorized internal record where appropriate.

Do I have to use AI?

No. AI starts off and requires a separate authorized action. Guided intake, manual entry, forms, and reporting must remain usable without AI.

Is client information used to train AI?

No. Client case data, uploads, prompts, outputs, edits, and feedback are not authorized for model training or fine-tuning. When optional AI preparation is enabled, every request requires no-prompt-training and zero-data-retention routing; if no eligible provider route is available, the request fails.

What does the feedback button send?

Only the category and message you enter, your signed-in email, a generalized page label with record identifiers removed, and the application version. It does not copy page content, case answers, Case Tray entries, files, query parameters, or browser storage. Do not put sensitive case information in feedback.

What happens to a document used for AI review?

Every document upload shows the retention choice. Document-to-AI processing and temporary uploads are not enabled yet. When activated, the user can keep a client-controlled case attachment or choose a temporary AI-review copy. After human review, CAL Threat deletes and verifies removal of the temporary source copy while retaining the review decision and any content the person approved or edited and saved.

Can I upload case files during the initial live pilot?

No. The initial live pilot is text-first. Keep source files in your organization’s authorized case-management or records system and enter only a non-sensitive reference or minimum-necessary summary in CAL Threat. Client logos are optional, non-authoritative presentation assets that can be re-uploaded if necessary.

Does sharing mean CPPS accepted the matter?

No. Delivery requests consideration only. It does not establish monitoring, review, response, or another professional service unless separately accepted.

Questions or suspected incidents

Privacy questions
jameson.ritter@cpps.com
Suspected security incidents
jameson.ritter@cpps.com

Do not include case facts, names, attachments, or other sensitive information in an initial email. These addresses are not emergency reporting channels.