accore
Resources

Security Overview

Short trust & governance overview for decision makers. Formal certifications are not claimed here — deep dive under Platform → Security.

  • Access JWT at the edge: signature, exp, iss, aud — no role evaluation in the gateway
  • Tenant isolation: global identity, regional domain data with RLS
  • Least-privilege service roles (RW/RO) in shared DBs
  • Append-only audit per domain + request correlation (X-Request-Id)
  • CORS and rate limits at the gateway; coarse edge limits at HAProxy

Primary CTA opens the full Platform security deep dive.

Raccore Business Operations Platform