Security at Enthovion
This page describes planned and current security practices for the Enthovion platform. Enthovion does not claim certifications such as SOC 2 or ISO 27001 unless explicitly verified and published.
Planned controls
- Role-based access control for workspaces and modules
- Encryption in transit for web traffic (HTTPS)
- Encryption at rest for stored platform data (planned)
- Audit-friendly activity history for review workflows (planned)
- Tenant and site scoping for multi-site organizations (planned)
- Backup and recovery procedures for production data (planned)
Current website
The public marketing website collects early access submissions client-side in this repository build. Production waitlist handling should use a secured backend with appropriate access controls before storing personal information.