Security

Security is foundational to DigiT. Here is how we protect your data and infrastructure.

Last updated: June 17, 2026

Data Encryption

All data is encrypted in transit using TLS and at rest using industry-standard AES-256 encryption. Sensitive credentials and secrets are stored in encrypted, access-controlled vaults.

Tenant Isolation

DigiT is built on a multi-tenant architecture with strict logical isolation. Row-level security policies enforce that each organization can only access its own data, scoped to its tenant boundary at the database level.

Access Controls

We enforce role-based access control (RBAC) with granular permissions across every module. Administrative actions are protected, and all privileged operations are recorded in an immutable audit log.

Authentication

Authentication is handled through a secure, industry-standard provider with hashed credentials, session management, and email verification. We never store plaintext passwords.

Audit Logging

Security-relevant events are captured in a tamper-resistant audit trail, giving organizations full visibility into access, configuration changes, and data operations within their workspace.

Infrastructure

Our platform runs on hardened, continuously monitored cloud infrastructure with automated backups, network isolation, and DDoS protection. We apply security patches promptly and follow the principle of least privilege throughout our systems.

Reporting a Vulnerability

We welcome responsible disclosure. If you believe you have found a security vulnerability, please contact our security team at security@digit-ai.org. We investigate all legitimate reports promptly.

Questions? Contact us at legal@digit-ai.org.