Security

Security Is Foundational,
Not an Add-On

Enterprise-grade protection for your code, workflows, and organisation. Built in from day one.

Security Philosophy

Three principles guide every decision we make about security.

Least-privilege access

Users and integrations get only the permissions they need. No broad access by default.

Transparency & auditability

Every action is traceable. Know who did what, when, and where.

Deployment flexibility

Cloud, private cloud, or on-premise. You choose where your data lives.

Data Protection

Your code and metadata stay under your control.

No source code stored externally unless explicitly configured
Secure OAuth flows for repository authentication
TLS encryption for data in transit
Encrypted metadata at rest
Minimal telemetry collection

Identity & Access Management

Enterprise identity integration with granular controls.

SSO integration
SAML-based authentication
Role-based access controls
MFA compatibility

Audit & Compliance

Full visibility for auditors and compliance teams.

Audit logs

Detailed activity records for compliance and forensics

Admin tracking

Track permission changes and administrative actions

Exportable reports

Generate reports for auditors and stakeholders

Retention policies

Configurable log retention to meet your requirements

AI Security

AI assistance with governance and transparency built in.

AI governance

Centralised controls for AI features across your organisation

Configurable controls

Enable, limit, or disable AI capabilities per team or org

Audit trail for AI actions

Full visibility into AI-assisted operations

Deployment Options

Choose the deployment model that fits your security requirements.

Cloud

Managed hosting with enterprise-grade security

Private

Dedicated private cloud for your organisation

On-Premise

Full control within your own infrastructure

Enterprise Security, Your Way

Get detailed security documentation, architecture guidance, and compliance support.