Skip to content
Security and privacy

Security built into the platform

Access control, authentication and protection across all endpoints.

Transparent scope

This page describes implemented technical controls. It does not claim external certifications such as ISO 27001 or SOC 2.

Implemented controls

Available

JWT + Roles

Authentication with JWT tokens and role-based access control (user/admin).

Available

Sessions

Complete session management — list and revoke devices.

Available

Rate Limiting

Abuse protection with configurable rate limiting per endpoint.

Available

Email Verification

Mandatory email verification for new registrations.

JWT with roles

JWT tokens with user and admin roles for access control.

Session management

List active devices and revoke sessions individually.

Password reset

Reset via email and via admin panel.

Email verification

Mandatory email validation on registration.

Rate limiting

Request limits per endpoint for abuse protection.

How does authentication work?

We use JWT with roles (user/admin). Tokens are issued on login and validated on each request.

Can I revoke a user's sessions?

Yes. Session management lets you list all active devices and revoke any session.

How does password reset work?

Reset can be done by the user via email or by the admin directly in the panel.

Does the platform have integrated billing?

Yes. Credit system, upgrade/downgrade with cost preview, free trial and discount coupons.