Scoped access
Customer environments are integrated with least-privilege, cross-account access patterns so reviews can run without broad standing credentials.
Security
We design the platform to minimise access, keep sensitive workflows explicit, and make it easy to report issues responsibly.
Customer environments are integrated with least-privilege, cross-account access patterns so reviews can run without broad standing credentials.
Application data is protected with authenticated access controls, provider-managed encryption, and separated billing workflows for payment details.
The platform is built around explicit auth boundaries, audit-friendly workflows, and server-side validation for privileged actions.
If you discover a security issue, contact security@thecloudlighthouse.dev with reproduction details and we will investigate promptly.
Reach out if you need help reviewing deployment architecture, discussing trust requirements, or reporting a vulnerability. Include as much technical detail as you can so we can triage quickly.