Security
Security is foundational to DigiT. Here is how we protect your data and infrastructure.
Last updated: June 17, 2026
Data Encryption
All data is encrypted in transit using TLS and at rest using industry-standard AES-256 encryption. Sensitive credentials and secrets are stored in encrypted, access-controlled vaults.
Tenant Isolation
DigiT is built on a multi-tenant architecture with strict logical isolation. Row-level security policies enforce that each organization can only access its own data, scoped to its tenant boundary at the database level.
Access Controls
We enforce role-based access control (RBAC) with granular permissions across every module. Administrative actions are protected, and all privileged operations are recorded in an immutable audit log.
Authentication
Authentication is handled through a secure, industry-standard provider with hashed credentials, session management, and email verification. We never store plaintext passwords.
Audit Logging
Security-relevant events are captured in a tamper-resistant audit trail, giving organizations full visibility into access, configuration changes, and data operations within their workspace.
Infrastructure
Our platform runs on hardened, continuously monitored cloud infrastructure with automated backups, network isolation, and DDoS protection. We apply security patches promptly and follow the principle of least privilege throughout our systems.
Reporting a Vulnerability
We welcome responsible disclosure. If you believe you have found a security vulnerability, please contact our security team at security@digit-ai.org. We investigate all legitimate reports promptly.
Questions? Contact us at legal@digit-ai.org.