Back to Trust Center

Security at EuroComply

Current controls and evidence boundaries for enterprise buyers. This page avoids unsupported compliance claims.

Identity and access

Authentication is handled through Supabase Auth and protected application routes.

  • Session-based access controls
  • Protected dashboard routes
  • Role-aware organization workflows

RBAC and tenant boundaries

Organization access is role-based and designed to work with database isolation controls.

  • Owner, admin, editor, member and viewer roles
  • Server-side permission checks
  • RLS migrations and validation evidence

Audit and monitoring

Critical operations are intended to create audit events and release evidence.

  • Audit event code paths
  • Sanitized metadata
  • Release gates for trust documentation

Current non-claims

EuroComply does not currently claim SOC 2, ISO 27001 certification or completed third-party penetration testing.

  • Use designed-to-support language
  • Attach evidence before stronger claims
  • Responsible disclosure: renansilva2002@gmail.com