Access control
Access should follow roles and the minimum permissions needed for the work.
We treat security as an engineering and operational responsibility. This page describes the principles we design toward; it does not claim certifications we have not earned.
Access should follow roles and the minimum permissions needed for the work.
Customer and company data should remain logically separated across the product architecture.
Connections should use modern encrypted transport wherever data moves across networks.
Important system actions and failures should be observable so issues can be investigated.
Recovery planning should reduce the impact of accidental loss or service problems.
Security concerns can be reported directly so they can be reviewed and handled responsibly.
Send the details to our contact email with “Security” in the subject. Please avoid accessing or changing data that does not belong to you.
hello@xzade.com ↗