File 03
Evidence-safe security phrasing
5 records, read from 9-security-evidence.
| Unsafe claim | Evidence-safe version |
|---|---|
| “They were breached” | “The domain appears in an authorized breach-notification result as of [date]; scope and current risk are unconfirmed.” |
| “They have no MFA” | “MFA status is not publicly verifiable.” |
| “This version is vulnerable” | “A passive fingerprint suggests version X; the version and exploitability were not validated.” |
| “Their endpoint is exposed” | “A passive index listed service Y at time Z; no active connection was attempted.” |
| “Employee credentials are on the dark web” | Do not make or store this claim from unverified dumps. Use an authorized domain-monitoring process. |