Public /security page: surface security posture for buyers #179

Open
opened 2026-05-14 17:31:02 +00:00 by chihlasm · 0 comments
Owner

Add a public /security route that surfaces ResolutionFlow's security posture.

Content to surface

  • Data hosting (Railway)
  • Encryption at rest + in transit
  • Tenant isolation (RLS)
  • RBAC model
  • Audit logging
  • Backup posture
  • SOC 2 stance
  • Breach notification commitment
  • SSO availability
  • Subprocessor list (link to subprocessor page)

Source material

Content drafted in GTM-READINESS-AUDIT.md security one-pager work.

Acceptance

  • Route is publicly accessible (no auth)
  • Linked from marketing footer and Trust Center entry points
  • Subprocessor link resolves to the existing subprocessor page
  • Copy is consistent with the Privacy Policy, ToS, and DPA baseline
Add a public `/security` route that surfaces ResolutionFlow's security posture. ## Content to surface - Data hosting (Railway) - Encryption at rest + in transit - Tenant isolation (RLS) - RBAC model - Audit logging - Backup posture - SOC 2 stance - Breach notification commitment - SSO availability - Subprocessor list (link to subprocessor page) ## Source material Content drafted in `GTM-READINESS-AUDIT.md` security one-pager work. ## Acceptance - Route is publicly accessible (no auth) - Linked from marketing footer and Trust Center entry points - Subprocessor link resolves to the existing subprocessor page - Copy is consistent with the Privacy Policy, ToS, and DPA baseline
Sign in to join this conversation.