Deny by default
Authorisation starts from nothing. A page or endpoint is reachable because a grant says so, not because no rule happened to forbid it. A subject with no grants for a product resolves to an empty permission set and is refused.
Resource
This page lists what the platform does, in terms your security reviewer can verify. It does not claim certifications the platform has not been audited for, and it does not publish an SLA number that is really a contract term.
Row-level scoping, schema-per-tenant or database-per-tenant, per deployment.
Organisation and branch are read from a verified auth context, never from a request body.
Permissions are granted per role, per branch, and enforced on the server.
A hash-chained trail; audit rows are never updated or deleted.
Crypto-shredding removes readability of personal data without rewriting audit history.
TLS in transit; encryption at rest at the storage layer.
Authorisation starts from nothing. A page or endpoint is reachable because a grant says so, not because no rule happened to forbid it. A subject with no grants for a product resolves to an empty permission set and is refused.
We are a new platform. We have not completed an ISO 27001 audit and we do not claim one. If your procurement process requires specific attestations, raise it during evaluation and we will tell you honestly where we are.