Skip to main content
Security & Trust Center

Why Trust Us?

Operations depend on API keys, and security demands rigorous control. We prioritize encrypted storage, role-based workspaces, safe provider validation, health monitoring, and configurable alerts.

Security Architecture Flow

Swipe to view the full security flow
Your TeamAuthenticated Session
HTTPS
Control Panel NodeChecks Workspace
Permissions
Encrypted VaultAES-256 Decryption
Provider ValidationHealth Checks Only

AES-256 Encryption at Rest

API keys stored in the standard vault are encrypted at rest with AES-256-GCM. Access is routed through authenticated server paths, workspace membership checks, and role-based permissions.

Monitoring, Not Traffic Proxying

API Key Health validates stored credentials against provider endpoints and records health status for dashboards and alerts. It does not currently sit in your application's request path.

Strict Audit Visibility

Key actions such as adding, validating, revealing, rotating, and relocating credentials are designed to produce audit visibility for owners and administrators.

Enterprise Compliance

Our infrastructure prioritizes data sovereignty and rigorous access controls across all layers, built to align with stringent compliance standards.

Secure Your Keys Now