Trust Center
Security Architecture

Security Architecture

Per-plane control enumeration. Every claim sources to a file:line in the canonical Security Architecture document. Gaps are named, not hidden.

Production-safety posture

Production behavior under TLS, HSTS, CSP, CSRF, rate limiting, MFA, and tenant isolation is unaffected. Live-database activation of the canonical audit-events schema and SpendGuard scaffolding remains paused until production database identity is verified — see the active condition on /status.

Honest gaps

Tracked deficits an enterprise reviewer should expect to see closed before regulated-industry adoption. Each maps to a tracked finding in STATUS.md.

01

Production database identity verification — Production-Safety Stop active.

02

AUDIT_DUAL_WRITE_ENABLED end-to-end activation — gated on the same Stop.

03

Three legacy audit_logs models still present alongside the canonical one (audit finding B13).

04

No SOC 2 / HIPAA / FedRAMP / ISO 27001 audit in flight.

05

No multi-region data residency — single Neon region today.

06

No edge WAF / bot protection layer.

07

Branch protection on main — gated on org-admin activation.