Security & trust overview
How Oblifee isolates each workspace, authenticates users, stores data and protects secrets - the architecture behind the platform.
Tenant isolation
How every workspace's data is separated at the database with row-level security, so one workspace can never read another's rows.
Authentication
How you sign in to Oblifee through a managed identity provider, how sessions work, and how workspace access is granted and revoked.
Secrets & managed identity
Why Oblifee stores no standing database password, authenticates with short-lived managed-identity tokens, and pulls other secrets from a vault at runtime.
Data handling
What Oblifee stores, what it deliberately does not, how data-subject requests are honoured, and how long data is kept.
Application hardening
Browser-side defence in depth - a strict Content Security Policy, security headers, safe templating, and how uploads are quarantined and scanned.
Regulatory brain integrity
How Oblifee's regulatory brain is kept a separate, read-only, cited dataset that the application cannot mutate.