Security & privacy
Plain‑English controls backed by best practice.
Data protection
- HTTPS everywhere
- API keys per site, per environment
- IP allow‑listing
Access control
- Roles & permissions
- Audit trail
- SSO/SAML (optional)
Compliance
- GDPR tools (export/delete)
- DPA on request
- EU data residency (option)
Resilience
- Off‑site backups
- Uptime monitoring
- Rate limiting & WAF