Security

# How Tensel isolates your applications, protects your secrets, and prepares for incidents.

## Isolation

Each environment runs in its own container, never a shared process between customers. Builds run untrusted code: each build runs in a disposable virtual machine, destroyed after use, with no access to platform networks.

## Secrets

Your secrets are encrypted at rest before they reach the database, injected only at runtime, and never written to logs. Secret writes are audited.

## Auditability

Sign-ins, role changes, secret writes and deployments are recorded in a browsable audit log, retained for one year.

## Continuity

The platform database is snapshotted every 6 hours and restoration is proven by real drill (last drill: 7 min 49 s to verified data). The platform is monitored with alerts on queues, containers and the database.

## Where your data lives

Every platform capability, the kind of service behind it, and where it runs. Everything is in Paris, except the optional integrations we disclose.

| Capability | Service | Location | Status |
| --- | --- | --- | --- |
| Compute (your applications) | Serverless containers from a European host | Paris, one container per environment | In production |
| Static site delivery | European CDN (BunnyWay, Slovenia) | European points of presence (EU, Switzerland, UK, Norway); origin in Paris | In production |
| Builds | Disposable virtual machines | Paris, destroyed after every build | In production |
| Container images | Private container registry | Paris, private registry | In production |
| Platform database | Managed PostgreSQL (European host) | Paris | In production; restoration proven by drill (2026-08) |
| Platform secrets | Secrets manager + application-level encryption | Paris | In production |
| Monitoring | The host's native metrics and logs | Paris | In production |
| Sign-in emails | European transactional email service | Paris; verified domain | In production |
| Identity | Self-operated (better-auth) in our own database | Paris; GitHub/Google optional and disclosed | In production |
| Source code integration | GitHub (App) | US service, optional, scope limited to the repo | Disclosed |
| Payments | Mollie (Netherlands) | European contracting entity; processing and transfer evidence pending | Adapter ready; collection disabled pending production approval |

## Report a vulnerability

Write to [security@tensel.eu](mailto:security@tensel.eu). We acknowledge reports within 2 business days, we do not take legal action against good-faith research, and we credit you if you wish.

---

Source: https://tensel.eu/security
Site overview for agents: https://tensel.eu/llms.txt
