Security & privacy

Plain‑English controls backed by best practice.

Data protection

  • HTTPS everywhere
  • API keys per site, per environment
  • IP allow‑listing

Access control

  • Roles & permissions
  • Audit trail
  • SSO/SAML (optional)

Compliance

  • GDPR tools (export/delete)
  • DPA on request
  • EU data residency (option)

Resilience

  • Off‑site backups
  • Uptime monitoring
  • Rate limiting & WAF