Security

GDPR by design.

EU data handling, self-hosted fonts and no third-party CDNs, per-organisation pseudonymisation, and row-level data isolation. Our certification roadmap (incl. ISO 27001) is shared on request.

PLACEHOLDER — full security posture, sub-processors and certification status to be completed. A formal Trust Center follows once ISO 27001 is in place. (Phase 2)