Data encryption
Workspace and service traffic is protected in transit, and stored data is encrypted at rest by the underlying infrastructure.
- In transit: client and service connections use TLS so credentials and workspace payloads are not sent in clear text over the network.
- At rest: database and object storage managed through Supabase use provider encryption at rest for persisted workspace records and related service data.
- Public demo and inquiry forms should carry only business contact and product context — never passwords, bank details, patient records, or confidential contracts.
- Encryption is one control among several. Access boundaries, authentication, and operational review remain part of how GHMAP protects workspace data.