End-to-end encrypted. Continuously audited.
Your data is encrypted in transit (TLS 1.3) and at rest (AES-256). OAuth tokens are encrypted column-by-column via pgcrypto. Immutable audit log for every action.
- TLS 1.3 on all communications
- AES-256 at rest (PostgreSQL + S3)
- OAuth tokens encrypted via pgcrypto
- Append-only audit log + S3 WORM copy
- Automatic secret rotation (Doppler)
- MFA required for admins