Security
Security and privacy
Accounts
Sign-in uses email and password managed by the authentication service. Accounts are provisioned by the operator; there is no public sign-up.
Private workspace
The workspace database is hosted by Lovable Cloud. Row-level access rules ensure a signed-in account can only read its own workspace.
Provider keys
Provider credentials are kept on the server or the collector server only. They are never sent to the browser or stored in the code repository.
Honest status
Failed and out-of-date collections are shown as such on the Sources page instead of being hidden.
Uploads
Collector uploads require a dedicated key; only a hash of that key is stored. No security certifications are claimed.
Report a security issue to contact@trendfalcon.se.