Security and trust
Inspect the controls before sharing a file.
CHEMDAS documents what is operating now, what remains customer-configurable, and what is not yet certified.
Control matrix
- Tenant isolation
- Application-level organization scoping and permission checks
- Operating
- Transport security
- HTTPS in transit; signed access paths for protected files
- Operating
- Authentication
- Session controls and role/permission enforcement
- Operating
- Audit logging
- Append-only event history and hash-chained import audit records
- Operating
- Backup and recovery
- Documented application backup configuration and recovery procedures
- Operating
- SOC 2
- No certification is currently held
- Not certified
- Penetration test
- Status available during security review
- Ask us
Security questions or responsible disclosure: security@chemdas.com
Evaluate the product and its controls together.
Use your own file, remove identifiers if needed, and keep the findings whether or not you continue.
Test a deliverable