Security is not a feature — it's a requirement. Here's how we protect your data.
All data is encrypted at rest with AES-256 and in transit with TLS 1.3. Database connections require SSL.
Every API key has explicit scopes and rate limits. Keys can be revoked instantly from your dashboard.
Workspace members have granular roles. Admins control who can read, write, or delete connected sources.
Every data mutation is logged with timestamp, user, and IP address. Logs are immutable and retained for 90 days.
Found a vulnerability? We take security reports seriously and will respond within 48 hours. Please do not publicly disclose issues before we've had a chance to address them.
security@confuse.site