Security

Your data, protected

Multibase is built with security at every layer. EU-hosted infrastructure, end-to-end encryption, and strict access controls keep your knowledge base safe.

EU data residency

All customer data stored on AWS eu-central-1 (Frankfurt). Data does not leave the EEA for storage.

Encryption

TLS 1.2+ for all data in transit. AES-256 encryption at rest for databases and object storage.

99.5% uptime SLA

Guaranteed monthly uptime on paid plans. Scheduled maintenance announced 24+ hours in advance.

GDPR compliance

Data Processing Agreement (GDPR Addendum) available for all customers. Standard Contractual Clauses for US provider transfers.

Authentication security

JWT tokens with short-lived access (15 min) and rotating refresh tokens. Passwords stored as bcrypt hashes — never in plaintext.

Secure media storage

All uploads via time-limited presigned URLs. No public write access to storage buckets. Alt text enforcement on all images.

Role-based access control

Control who can edit, review, and publish content. Audit trail of all changes with version history.

SOC 2 roadmap

SOC 2 Type II certification planned. Penetration testing planned as part of launch preparation. Security practices documented and available on request.

Have a security question?

Our team is happy to discuss security practices, provide our DPA, or walk through our infrastructure setup.