Back to Documentation
TRUST & SECURITY

Security, Encryption & Tenant Isolation Architecture

Deep dive into MetaOrbit AI security practices, secret isolation, RBAC, and data privacy.

Prerequisites

  • Technical curiosity

Instructions & Setup

1. Server Secret Management

API keys and database credentials are stored exclusively in Google Cloud Secret Manager with zero client bundle exposure.

2. Database Scoping

Every Prisma query enforces tenant ID scoping to guarantee strict isolation between workspaces.

3. HMAC Verification

All inbound webhooks (Paddle, Meta) verify cryptographic HMAC SHA-256 signatures.

4. Storage Ceilings

Enforced 50MB single-file upload ceiling and plan storage quotas (Trial 250MB up to Scale 200GB).

Plan Limits & Allocations

  • Continuous audit logging for all sensitive administrative actions

Troubleshooting & FAQs

Issue: Reporting a vulnerability

Resolution: Email our security team at business@metaorbitai.com for immediate investigation.

Need personalized technical guidance?

Contact Support Engineering