Your data security is our top priority. We apply industry-standard defense layers from day one — by default.
All data encrypted at rest with AES-256 and in transit with TLS 1.3. Database backups are stored encrypted.
TOTP-based 2FA available on every plan — including Free. Recovery codes supported.
View and revoke active sessions. Track device, IP, and last activity.
Each customer runs in its own isolated subdomain and data scope. Cross-tenant access is rejected by middleware (HTTP 403).
Every critical change is written to a tamper-evident audit log. Retention from 7 days to 1 year depending on plan.
99.99% SLA for Enterprise customers. Automated backups and disaster recovery.
If you have discovered a vulnerability, please contact us under our responsible disclosure program. All reports are reviewed within 24 hours.
security@cuvionerp.com