Security

Build with control

Keep important decisions visible.

Back home

Connected stack

Use your tools

Clouds, databases, repos, billing, AI, observability.

Language lifecycle

Preview runtimes are flagged.

Database residency

Data follows workspace policy.

Provider posture

Cloud checks before deploy.

Workspace isolation

Accounts, projects, providers, and data stay scoped.

Regional policy

Workspace country drives storage and deploy regions.

Project credentials

Secrets are referenced, never stored in lifecycle JSON.

Release gates

Commit, dry-run, approval, rollback, then deploy.

AI boundaries

Tenant data is not used for model training.

Launch history

Docs, tests, events, and decisions stay connected to every build.

Trust surface

AI building, controlled

Stack, approvals, release paths.

Reviewable plans

Live

Requirements and risks first.

Project history

Live

Prompts, plans, output, and notes.

Provider checks

Packaged

Keys, regions, and permissions before launch.

Launch visibility

Packaged

Docs, tests, previews, and deploy path.

Scale and Enterprise options

RBAC enforcementCredential vault workflowScanning pipelineSIEM export planSecurity review support