Secure Origin helps newsrooms and media-support teams protect staff devices, reduce phishing and account risk, secure source and reporting workflows, and validate defenses before a story, source, or incident forces the issue.
This work is informed by direct experience with a worker-owned newsroom and community organizations, where source trust, staff safety, and limited internal capacity all matter.
Newsrooms hold source identities, reporting materials, communications, drafts, and pre-publication work that can put people at risk if exposed. The stakes stay high even when the team and budget are small.
Review accounts, devices, communication channels, shared folders, and source intake before contacting high-risk sources.
Protect drafts, web captures, FOIAs, source notes, legal materials, and collaboration spaces from accidental exposure.
Assess suspicious logins, device concerns, exposed files, or newsroom workflows that may put sources or reporters at risk.
Best for high-risk investigative newsroom source intake where Tor-only submission, strict operational procedures, and air-gapped review workflows are justified.
Often better for NGOs, legal aid organizations, advocacy groups, compliance programs, whistleblowing projects, and smaller teams needing flexible secure reporting workflows.
Some teams only need clear Signal, PGP, policy, and escalation guidance before they are ready for a full anonymous intake platform.
Use the checklist to decide whether the next step is Protect Devices, Protect People, Protect The Organization, validation, or workspace support.
Use Protect Devices when reporter laptops, BYOD, patch exposure, and endpoint monitoring are the first concern.
Use Security Testing & Validation before a sensitive story, source risk, or stakeholder review creates urgency.
A practical guide for newsrooms protecting source communications.