Security
How we protect your data.
Zero-trust principles, encryption, and a responsible disclosure process across every DarDev platform.
Zero-trust infrastructure
Every DarDev platform - Workspace, DarDevOps, and DarDevCDE - runs on identity-aware infrastructure that assumes every request must be verified. Network policy is enforced with Cilium, with explicit allow-only rules and encrypted communication tunnels.
Encryption
Data in transit is encrypted via TLS. Hesabi and Workspace credential stores use HashiCorp Vault for secrets management. Hesabi data is encrypted at rest.
Identity & access
Single sign-on and role-based access control are enforced through Keycloak across our internal Workspace platform, with audit-logged access for compliance reviews.
Responsible disclosure
If you believe you have found a security vulnerability in any DarDev product, email contact@dardev.net with details. We aim to acknowledge reports within 2 business days.