Recovery targets
Agree recovery point and recovery time targets for database, attachments, configuration and application releases.
Resilience
A customer-owned recovery model with explicit evidence instead of assumed backups.
Agree recovery point and recovery time targets for database, attachments, configuration and application releases.
Back up PostgreSQL, persistent file storage, secrets references and the configuration required to rebuild the service.
Encrypt backups, separate backup credentials from runtime credentials and restrict restore permissions.
Run scheduled restore rehearsals into an isolated environment and record duration, integrity checks and findings.
Contain access, preserve evidence, select a recovery point, restore, validate, communicate and document the decision trail.
The final schedule, tools, retention and on-call ownership belong to the customer unless a signed service package states otherwise.