Security
Security is the first feature.
Responsible disclosure: security@striveloom.com. We respond within 24 hours.
Encryption everywhere
TLS 1.3 in transit. AES-256 at rest via Supabase. Secrets in Vercel + Supabase Vault with rotation.
Row-level security
Every database table enforces RLS. Access validated via pgtap tests that block merges.
Monitoring & audit logs
Sentry error tracking, immutable audit log for sensitive actions, session replay on errors only.
Compliance in progress
SOC 2 Type II underway. GDPR + CCPA compliance on day one.