Access controls
Authentication protects workspace and administrator routes. Role checks and active organization memberships govern access to client records. Administrator functions independently verify administrator status before privileged operations.
Data boundaries
Customer records are organization-scoped. Demonstration content is static, fictional, and excluded from production totals. Acceptance-test fixtures carry explicit test markers and shared run identifiers so they can be filtered and removed without touching production records.
Operational safeguards
Sensitive actions use server-side validation. Work orders require governed approvals, and verification is recorded separately from completion. Public contact submissions are validated, throttled, screened with spam controls, and readable only by administrators.
Accurate scope
This page describes implemented application safeguards; it does not claim a certification, audit standard, regulatory status, or absolute security. Security questions can be submitted through the Contact page.