Skip to main content

IDACT Trust Center

Private beta

Security and reliability

IDACT combines tenant isolation, passwordless authentication, server-side authorization, RLS, audit, and verifiable releases in one control model.

Verifiable overview
Last updated
Version
1.1

Tenant and data isolation

Operational

Each workspace applies organization boundaries and Row Level Security. Sensitive operations are authorized again on the server.

Identity and access

Operational

Access is passwordless, sessions are managed server-side, and roles, memberships, and the active organization determine effective permissions.

Application and releases

Active control

Secrets are not distributed to the browser. Server integrations apply verification, idempotency, and origin controls; every release passes versioned builds and tests.

Evidence Pack and signing

In preparation

Signed Evidence Pack publication remains unavailable in the current release stage until remote signing, operational keys, and runbooks have been validated in the target environment.

Responsible disclosure

Operational

Security reports are received through a dedicated channel. Do not include unnecessary secrets or personal data in the first contact.