We assume one thing by default — data is lost because security failed somewhere. Everything we do follows from that assumption.
STROJAN is a cybersecurity-driven data recovery entity. We assume one thing by default — data is lost because security failed somewhere.
Every device we handle is treated as a potential breach, and every recovery is executed as a controlled cyber operation rather than a repair job.
We follow zero-trust principles, read-only methodologies and ethical software-based recovery practices. No hardware tampering. No shortcuts. No fear-based selling.
When recovery is not feasible, we say so — in writing, on day one. That honesty is the product.
An ethics statement is only meaningful if it costs you work. These are the engagements we turn down.
We do not access any system, account or device without documented authorisation from its verified owner. No exceptions, regardless of the story.
We do not perform covert monitoring of individuals, partner tracking, or any activity designed to violate a person's privacy.
We will not inflate urgency, invent hardware failures, or quote a price before diagnosis to pressure a decision.
We are software-only. We will not open a drive, swap heads or experiment physically on media we cannot restore.
We will not promise recovery before imaging the media. Anyone who does is selling certainty they do not have.
We do not hold recovered data hostage against payment disputes, and we do not retain copies after handover.
Every device that reaches us is treated as a potential breach until proven otherwise. Nothing is assumed clean.
We image first and work on the copy. Your original media is never written to, opened, or physically altered.
Nobody can promise 100% recovery. We give you a written feasibility verdict before you pay anything.
Signed confidentiality on every engagement, with documented handling from intake to verified handover.
Once you confirm handover, working copies are securely wiped. We do not keep your data as leverage.
No unauthorised access, no surveillance work, no engagement without documented consent from the asset owner.
You describe the incident. We sign an NDA, log the device, and tell you immediately what NOT to do next.
A hash-verified forensic image is created. All analysis happens on the copy — the original is sealed and untouched.
You receive a written verdict: what is recoverable, what is not, what it costs. If nothing is recoverable, you pay nothing.
On your approval, recovery runs as a documented operation with checkpoints — not a black box you wait outside of.
You validate the recovered data before we close. Working copies are then securely destroyed and the log is signed off.
Even when the truth is that you should not pay us.