Security

Security

Tenant isolation, MFA for privileged roles, and audit trails.

Tenant isolation

Shared-DB tenancy with scoped queries and path-isolated files under tenants/{id}.

Privileged MFA

Platform admin MFA required; workspace MFA enforceable for board and admin roles.

Human-approved AI

Drafts stay pending until a human approves, edits, or rejects — never auto-publish.

Governance audit

Critical transitions emit audit events across assessment, findings, decisions, and packs.

Access

Role boundaries by seat

  • Board, executive, ops, and tenant admin roles
  • Permission checks on workspace actions
  • Invitation-based tenant onboarding

Evidence

Path-isolated vault

  • Versioned uploads with classifications
  • Checksum verification on files
  • Downloads scoped to the active tenant

Operations

Pilot-ready hardening

  • Security headers on web responses
  • Isolation and MFA enforcement paths
  • Staging UAT and backup drill posture