Security

Last updated 2026-07-06

People trust Avieros with business data and civic questions, and that trust is a responsibility before it is a feature. This page describes our security posture in concrete terms — what is actually in place, how it is enforced, and, just as deliberately, what we do not claim yet.

1. Encryption & transport security

2. Data access & tenant isolation

Avieros business surfaces are multi-tenant: many businesses, one platform. Isolation between them is enforced at the database layer, not just in application code:

3. Secrets handling

4. Proof-before-claim engineering

Most security failures we have seen in the wild start as process failures: something was believed deployed, fixed, or isolated, but never verified. Avieros engineering runs on written rules designed against exactly that:

5. What we do not claim

Stated plainly, because implying otherwise would be dishonest:

6. Report a vulnerability

If you believe you have found a security issue in any Avieros property, email privacy@avieros.com with the subject line SECURITY. Please include steps to reproduce. Good-faith research conducted without harming user data will not be met with legal threats.