Protection principles
- Use HTTPS for Agent-to-cloud control communication.
- Support AES-256 encrypted backup workflows.
- Restrict administrative access by organization and permission scope.
- Keep retention and deletion decisions visible and governed.
- Avoid collecting business data that is not required for service operation.
Data lifecycle
Transmission
Control traffic is designed for authenticated HTTPS transport.
Backup encryption
Backup workflows support AES-256 encryption; key handling must follow the selected deployment model.
Retention
Policies define how long backup records and files are intended to remain available.
Documented deletion process
Formal customer-facing deletion procedures and timelines continue to be documented.
Customer ownership
Customers retain responsibility for their business data, lawful processing, destination selection, retention requirements and authorization of restore operations.
