Security & trust centre

Clear controls for a system that stays in your environment.

Opliora is designed for customer-controlled deployment. Final responsibilities and controls are documented during implementation for the selected architecture.

01

Deployment boundary

Docker-ready standalone application behind the customer reverse proxy. The customer controls network access, TLS termination and exposure.

02

Identity and access

Role-based permissions, session controls and optional two-factor authentication. Enterprise identity integrations are scoped to the customer environment.

03

Data ownership

Operational records remain in the customer-controlled PostgreSQL database. The customer defines backups, retention, recovery and database access.

04

Auditability

Critical business actions retain actor, time and affected record context to support operational review and incident investigation.

05

Release management

Controlled application releases can be validated in a test environment before the customer schedules production deployment.

06

Privacy by design

The public demo uses protected sample data. Customer deployments are separated and do not depend on a shared Opliora customer database.