Security
How Tensel isolates your applications, protects your secrets, and prepares for incidents.
Isolation
Each environment runs in its own container, never a shared process between customers. Builds run untrusted code: each build runs in a disposable virtual machine, destroyed after use, with no access to platform networks.
Secrets
Your secrets are encrypted at rest before they reach the database, injected only at runtime, and never written to logs. Secret writes are audited.
Auditability
Sign-ins, role changes, secret writes and deployments are recorded in a browsable audit log, retained for one year.
Continuity
The platform database is snapshotted every 6 hours and restoration is proven by real drill (last drill: 7 min 49 s to verified data). The platform is monitored with alerts on queues, containers and the database.
Where your data lives
Every platform capability, the kind of service behind it, and where it runs. Everything is in Paris, except the optional integrations we disclose.
| Capability | Service | Location | Status |
|---|---|---|---|
| Compute (your applications) | Serverless containers from a European host | Paris, one container per environment | In production |
| Static site delivery | European CDN (BunnyWay, Slovenia) | European points of presence (EU, Switzerland, UK, Norway); origin in Paris | In production |
| Builds | Disposable virtual machines | Paris, destroyed after every build | In production |
| Container images | Private container registry | Paris, private registry | In production |
| Platform database | Managed PostgreSQL (European host) | Paris | In production; restoration proven by drill (2026-08) |
| Platform secrets | Secrets manager + application-level encryption | Paris | In production |
| Monitoring | The host's native metrics and logs | Paris | In production |
| Sign-in emails | European transactional email service | Paris; verified domain | In production |
| Identity | Self-operated (better-auth) in our own database | Paris; GitHub/Google optional and disclosed | In production |
| Source code integration | GitHub (App) | US service, optional, scope limited to the repo | Disclosed |
| Payments | Mollie (Netherlands) | European contracting entity; processing and transfer evidence pending | Adapter ready; collection disabled pending production approval |
Report a vulnerability
Write to security@tensel.eu. We acknowledge reports within 2 business days, we do not take legal action against good-faith research, and we credit you if you wish.