
Security and compliance built into the product
Tenant isolation, role-based access, audit trails, and EU data handling written into the platform instead of layered on later.
Organization isolation
Each organization operates in its own context, with isolated data, branding, and configuration.
Role-Based Access
Role-based access from subscriber to system admin, with support for IP restrictions and auditable impersonation.
GDPR support
Built-in support for data access and deletion requests, audit logs, and EU-based data handling.
Secure Authentication
SSO, Google sign-in, and email/password via Clerk. Custom OIDC provider for partner integrations.
Audit Trail
Important actions are logged so administrators and compliance teams can trace changes over time.
Encrypted & Monitored
TLS everywhere. Secure token-based download links. Winston logging with daily rotation for operational visibility.

Security by design