Back to Documentation
TRUST & SECURITY
Security, Encryption & Tenant Isolation Architecture
Deep dive into MetaOrbit AI security practices, secret isolation, RBAC, and data privacy.
Prerequisites
- Technical curiosity
Instructions & Setup
1. Server Secret Management
API keys and database credentials are stored exclusively in Google Cloud Secret Manager with zero client bundle exposure.
2. Database Scoping
Every Prisma query enforces tenant ID scoping to guarantee strict isolation between workspaces.
3. HMAC Verification
All inbound webhooks (Paddle, Meta) verify cryptographic HMAC SHA-256 signatures.
4. Storage Ceilings
Enforced 50MB single-file upload ceiling and plan storage quotas (Trial 250MB up to Scale 200GB).
Plan Limits & Allocations
- • Continuous audit logging for all sensitive administrative actions
Troubleshooting & FAQs
Issue: Reporting a vulnerability
Resolution: Email our security team at business@metaorbitai.com for immediate investigation.
Need personalized technical guidance?
Contact Support Engineering