Row-level tenant isolation
Separation is enforced by the database on every query, not by application code remembering to filter.
Security
This product captures screenshots and activity. That is a serious thing to run on somebody's machine, so the consent path and the isolation model are written down rather than implied.
Each of these is a mechanism, not a policy statement.
Separation is enforced by the database on every query, not by application code remembering to filter.
Where a monitoring policy is published, tracking is refused until the person on that machine has accepted it.
Available per account, with step-up re-authentication on sensitive actions.
Administrative actions are recorded in a log that cannot be edited after the fact.
Nightly backups, and the restore is exercised on every deploy rather than assumed to work.
Captured evidence can be held so that retention sweeps cannot remove it while a matter is open.
There is no SAML or OIDC single sign-on, and no SCIM provisioning. If your procurement process requires either, we are not a fit today and we would rather say so on this page than in a security questionnaire three weeks in.
Backups are taken and restores are rehearsed, but off-box replication is not yet in place. That is a deliberate, recorded gap rather than an oversight.