cyberenforced.io

Security & Compliance

Tenant isolation

Every organization's data is isolated at the database level with row-level security, not just in the application. One organization's members cannot query another organization's domains, findings, or members through the product, regardless of application-layer bugs.

Encryption

Data is encrypted in transit between your browser, the application, and the database.

Sub-processors

We rely on the following infrastructure providers to run the Service:

  • Supabase: database, authentication, and access control.
  • Vercel: application hosting.
  • Render: hosting for the domain-scanning worker.
  • Resend: transactional email delivery.
  • Stripe: payment processing, for organizations on a paid plan.

Certifications

CyberEnforced does not yet hold formal third-party certifications such as SOC 2 or ISO 27001. This page will be updated if and when that changes.

Reporting a security issue

Found a vulnerability? Email josh@cloudappsolutions.com directly.

Security & Compliance | CyberEnforced