Security

Access to data is controlled throughout the process.

Melduno describes only protection mechanisms that are present in the working version. We do not claim certifications the platform does not hold.

Security

Protection mechanisms in place

Security covers infrastructure, sign-in, authorisation and data recovery.

01

European infrastructure

The app and backups run on VPS infrastructure in a European data centre.

02

Transport encryption

Public connections are served over HTTPS/TLS.

03

Roles and permissions

Data access depends on role, organisation and the assigned case.

04

Passwords and tokens

Passwords are hashed with Argon2 and access tokens are not stored in plain text.

05

Two-factor authentication

Privileged accounts can be required to configure 2FA and recovery codes.

06

Secure sessions

Sessions use HttpOnly, SameSite and Secure cookies in production.

07

Abuse protection

Sensitive operations validate request origin and use rate limits.

08

Backups

Rotating database and file backups are kept for 14 days; encrypted external storage can be configured.

09

Chat transparency

The current chat is access-controlled but does not yet provide full end-to-end encryption.

Closed beta testing

Request beta access

Melduno security: European VPS, TLS, roles, secure sessions, password and token hashing, 2FA and backups.

Request beta access