Role-based access
Sessions are scoped to role-based workspaces — from the actuarial and finance desks to the cedent portal. Operations outside the role are designed to be refused, not hidden.
Trust & security
A platform that exists to carry evidence should describe its own posture the same way — plainly, including the parts still in front of us.
Sessions are scoped to role-based workspaces — from the actuarial and finance desks to the cedent portal. Operations outside the role are designed to be refused, not hidden.
Where terms or money move, the workflow requires different people to make and to check. The separation is enforced by the system and visible in the record.
State changes are recorded with author, timestamp and reason. Adjustments never overwrite — they annotate, and the annotation travels with the figure.
Records are scoped to their tenant by design, with queries carrying that scope at the data layer, so cedent portal users see their own treaties and nothing else.
Personal data is minimised, flagged where it appears, and access to it is role-gated and logged. The demonstration environment contains fictional people only.
Traffic is encrypted in transit, and credentials and connection secrets are kept in managed environment configuration rather than in code or exports. Walk the boundary with us and test it yourself.
The preview environment runs on managed cloud infrastructure (Vercel and Neon, on AWS US regions), with encryption at rest and tenant-scoped data. If your domicile's outsourcing guidance — BMA or CIMA — requires you to gather vendor due-diligence answers on continuity, recovery and audit access, we answer them directly in the working session rather than behind a portal.
Questions about our posture, or need a deeper security conversation for an evaluation? Contact us. See also the disclaimer and privacy notice.