Identity and least privilege
Built-in auth, LDAP, Google/OIDC, fixed roles, group membership, scoped access policies, and API-token controls.
Trust Center
Identity, access, proxy security, audit, and data controls in the source project are open to technical review. No certification or assurance claim is published without independent evidence.
Built-in auth, LDAP, Google/OIDC, fixed roles, group membership, scoped access policies, and API-token controls.
TLS validation, SSRF and redirect protection, controlled egress, and upstream secrets that are never returned by read responses.
Administration actions, package usage, operations, and outbound requests are visible through PostgreSQL-backed log surfaces.
Technical evaluation
Let’s review your formats, deployment, and security policies together.