Skip to content
fugoku
Get Started

Security & Compliance

Fugoku is built with security-first infrastructure. From secrets management to data residency, every layer is designed for enterprise-grade protection.

SOC 2 Readiness

  • Audit logs for all API actions
  • Role-based access control (RBAC) with owner/editor/viewer
  • Encryption at rest (PostgreSQL) and in transit (TLS 1.3)
  • MFA support via Clerk authentication

Data Residency

  • GCP regions: US, EU, Asia-Pacific
  • Customer data never leaves chosen region
  • GDPR-ready data processing agreements

Secrets Management

  • All secrets via Infisical (centralized, encrypted)
  • No plaintext credentials in code or repos
  • Automatic secret rotation available
  • Audit trail for all secret access

Uptime SLA

  • 99.9% uptime target for API
  • Multi-region failover via Cloudflare
  • Real-time health monitoring at /health
  • Incident response < 1 hour for P1

Compliance

  • GDPR compliant
  • SOC 2 Type I in progress
  • Regular security audits
  • Penetration testing quarterly

Questions about security?

Our team is ready to walk through our security posture, compliance roadmap, and infrastructure details.