Security

Security you can audit

Straightforward, documented, EU-hosted.

Two-factor authentication

TOTP through any authenticator app. 10 single-use backup codes. Enforceable per workspace.

Encrypted at rest

TOTP secrets AES-256-GCM encrypted. Bcrypt password hashing. HTTPS end-to-end through Cloudflare Tunnel.

Login history

Every sign-in logged with device, IP, and outcome. Visible to user and super-admin.

Audit log

Every mutation in the workspace logged — who, what, when. Filterable and exportable.

Data portability

Export workspace any time. Open schema. You can import into another tool or your own database.

Security · Agito