Tenant isolation
Postgres row-level security fails closed when a workspace context is absent. The application role cannot bypass those policies.
Security
This page describes implemented controls, not aspirational certifications.
Postgres row-level security fails closed when a workspace context is absent. The application role cannot bypass those policies.
Enrichment is tenant-scoped, suppression is keyed-hash based, and credentials are referenced through secret or OAuth bridges.
Server-side URL ingestion blocks private ranges, pins validated DNS results, and revalidates every redirect.
Control mapping and evidence collection are in progress. A report will be published only after audit completion.
Security questions or disclosure: security@foreword.example