ENA
Enafeedback
Enterprise

Security and compliance built into the foundation.

Enafeedback is designed for organizations where data isolation, identity governance, and audit integrity are non-negotiable — hospitals, financial institutions, multi-site enterprises.

Capabilities

Every security feature you need. None added later.

🔐

PostgreSQL Row-Level Security

Complete data isolation enforced at the database engine level. No cross-tenant data leakage even under application misconfiguration.

🪪

OIDC / SAML Identity

Enterprise identity via EnaCore Identity with PKCE flows. Module-scoped roles: feedback, hygiene, survey, cleaning, buildings, team, audit, platform owner.

🔗

HMAC-SHA256 Audit Chain

Append-only audit log with cryptographic integrity chaining per organization. Hash and chain verified on demand in the admin panel.

🔑

Encrypted Secrets at Rest

SMS provider credentials, webhook secrets, and session tokens encrypted using AES-GCM before storage in Redis.

👥

Module-Scoped RBAC

Granular roles per module: Admin, Operations Lead, Field Supervisor. Plus platform-level Auditor and Owner roles for compliance surfaces.

📋

Audit Retention Tiers

3 years on Starter, 5 years on Professional, 7 years on Enterprise. CSV export up to 5,000 rows with hash integrity verification.

Usanifu wa biashara

Imejengwa kwa mazingira ya wapangaji wengi yaliyodhibitiwa. (tenant) (multi-tenant)

Usalama na utii si moduli zilizoongezwa baadaye. Ni sifa za kimuundo za jukwaa.

Usalama wa safu mlalo wa PostgreSQL

Utengaji kamili wa data unatekelezwa kwenye safu ya hifadhidata kupitia RLS. Hakuna shirika linaweza kufikia data ya shirika lingine — hata kwa usanidi mbaya. Utengaji kamili wa hiari unapatikana.

Usimamizi wa utambulisho wa OIDC

Utambulisho wa kiwango cha biashara na mtiririko wa OIDC/SAML. Majukumu kwa moduli: maoni, usafi, dodoso, majengo, timu, ukaguzi. Jukumu la mmiliki wa jukwaa kwa uso wa utii.

Mnyororo wa ukaguzi wa HMAC-SHA256

Kila hatua ya msimamizi inaandikwa katika kumbukumbu ya ukaguzi ya kuongeza tu kwa shirika na mnyororo wa uadilifu wa HMAC-SHA256. Hash na mnyororo huthibitishwa kwa ombi.

Usalama wa data wa kimataifa

Ukusanyaji wa mawasiliano ni hiari. Idhini wazi inaandikwa unapowasilisha. Vipindi vya uhifadhi vinavyoweza kubadilishwa. Data ya kibinafsi inafichwa kabla ya uchakataji wa AI.

Data Isolation Model
EnaCore Catalog DBResource Pool DB+ RLS (tenantId)Tenant A|Tenant B|Tenant N

Enterprise Architecture FAQ

Uaminifu wa kiufundi

Miundombinu ya kiwango cha biashara. Bila kupunguza ubora.

PostgreSQL RLS

Utengaji wa data unatekelezwa kwenye kiwango cha injini ya hifadhidata, au utengaji kamili wa hiari.

Mnyororo wa ukaguzi wa HMAC

Kumbukumbu za ukaguzi zinazopinga udanganyifu, kwa shirika, za kuongeza tu.

Utambulisho wa OIDC

Utambulisho wa biashara na SSO kulingana na viwango vya tasnia.

Inaoendana na viwango vya kimataifa

Ukusanyaji wa data unaanza kwa idhini na uhifadhi unaoweza kusanidiwa.

Hifadhi ya Huawei OBS

Hifadhi ya vitu kwa shirika na usimbaji wakati wa kupumzika.

Jukwaa la EnaSpace

Utoaji wa huduma kwa kujitegemea, malipo na uendeshaji kupitia EnaSpace Portal.

Anza

Ona Enafeedback katika mazingira yako.

Wasiliana nasi — tutapitia usanidi, moduli na usanidi wa Enterprise pamoja.

Usalama wa safu mlalo wa PostgreSQL
Mnyororo wa ukaguzi wa HMAC-SHA256
Usalama wa data wa kimataifa
Google Gemini AI