Security and compliance built into the foundation.
Enafeedback is designed for organizations where data isolation, identity governance, and audit integrity are non-negotiable — hospitals, financial institutions, multi-site enterprises.
Capabilities
Every security feature you need. None added later.
PostgreSQL Row-Level Security
Complete data isolation enforced at the database engine level. No cross-tenant data leakage even under application misconfiguration.
OIDC / SAML Identity
Enterprise identity via EnaCore Identity with PKCE flows. Module-scoped roles: feedback, hygiene, survey, cleaning, buildings, team, audit, platform owner.
HMAC-SHA256 Audit Chain
Append-only audit log with cryptographic integrity chaining per organization. Hash and chain verified on demand in the admin panel.
Encrypted Secrets at Rest
SMS provider credentials, webhook secrets, and session tokens encrypted using AES-GCM before storage in Redis.
Module-Scoped RBAC
Granular roles per module: Admin, Operations Lead, Field Supervisor. Plus platform-level Auditor and Owner roles for compliance surfaces.
Audit Retention Tiers
3 years on Starter, 5 years on Professional, 7 years on Enterprise. CSV export up to 5,000 rows with hash integrity verification.
Construida per ambient regulads e multi-locatar. (tenant) (multi-tenant)
Segirezza e conformitad n'èn betg supplements tardivs. Quai èn proprietads structuralas da la plattafurma.
Segirezza da rincas PostgreSQL
Isolaziun cumpletta da datas via RLS sin il nivel da la banca da datas. Nagina organisaziun acceda datas d'in'autra — era cun configuraziun errada. Isolaziun cumpletta opziunala disponibla.
Gestiun d'identitad OIDC
Identitad d'interpresa cun fluss OIDC/SAML. Rollas per modul: resuns, igiene, sondadi, edifizis, equipa, audit. Roll da proprietari da plattafurma per surfatschas da conformitad.
Chadaina d'audit HMAC-SHA256
Mintga acziun d'administraziun vegn registrada en in protocol d'audit mo per agiunta per organisaziun, senza midadas, cun chadaina d'integritad HMAC-SHA256. Hash e chadaina vegnan verifitgads sin dumonda.
Segirezza globala da datas
Raccolta da contacts è opziunala. Consentiment explicit registrà tar l'entrega. Periodas da conservaziun flexiblas configurablas. Datas persunalas mascradas avant elavuraziun cun AI.
Enterprise Architecture FAQ
Infrastructura d'interpresa. Senza cumprimess.
PostgreSQL RLS
Isolaziun da datas al nivel dal motor u isolaziun cumpletta opziunala.
Chadaina d'audit HMAC
Protocols d'audit a prova da manipulaziun, per organisaziun, mo per agiunta.
OIDC
Identitad d'interpresa e SSO tenor standards da l'industria.
Conform als standards internaziunals
Raccolta da datas cun priorita al consentiment e conservaziun configurabla.
Huawei OBS
Memorisaziun d'objects per organisaziun cun criptadi en repos.
Plattafurma EnaSpace
Provisiun en auto-servetsch, facturaziun e operaziun via EnaSpace Portal.
Vesair Enafeedback en voss ambient.
Contactai nus — repassain insacoma configuraziun, moduls e vossa configuraziun Enterprise.