Organization isolation
Customer records are associated with an organization, and application access is filtered by organization.
This page summarizes the current MVP security approach. Formal certifications and advanced security features are not claimed.
Customer records are associated with an organization, and application access is filtered by organization.
The application uses session-based authentication for platform and organization administrators.
The production design uses Nginx and TLS certificates so browser and API traffic can be served over HTTPS.
Backup Pulse is intended to collect backup evidence and status information, not the backup data itself.
The MVP uses inbound email evidence and HTTP check-ins rather than broad administrative access to backup platforms.
Security documentation, operational controls, and additional safeguards will be expanded before broader public launch.
For the initial website, security questions can be sent through the contact page. A dedicated security address and disclosure policy can be added before public launch.