Enterprise security
by design.
You trust us to audit your most sensitive infrastructure. That trust requires absolute transparency. Here is how we protect your data, secure our agents, and harden the Retrievy platform.
Absolute tenant separation.
Most SaaS platforms use shared databases, relying on software-level foreign keys to separate your data from another customer's. We don't.
Retrievy employs a Database-per-Tenant architecture. Every customer receives their own dedicated, physically isolated database within our cloud infrastructure. Your security findings, AD group paths, and cloud resources never touch the same database tables as anyone else's.
Dedicated Data Stores
Complete physical separation of tenant databases eliminates the risk of cross-tenant data leakage due to application layer bugs.
Data Residency
Isolated storage allows for strict data residency controls and independent encryption key management per customer.
Read-only, outbound only.
Our collectors are designed to be entirely passive. They never require write access to your cloud providers, Domain Controllers, or Firewalls.
-
Outbound HTTPS Only Agents push data out to Retrievy. We never require inbound firewall rules, VPNs, or exposed listening ports on your network.
-
Least Privilege Collection Cloud environments connect via standard Reader roles. FortiGate uses read-only admin profiles. Active Directory agents run under local machine credentials without requiring Domain Admin privileges.
-
Signed Payloads All telemetry shipped from agents is cryptographically signed and validated before it hits your tenant database.
Secured in transit and at rest.
Any configuration item or identity meta-data collected from your environment is strictly protected.
AES-256 at Rest
All sensitive credentials (such as FortiGate SSH keys) are encrypted at rest using AES-256. Cloud provider keys are managed through secure secret vaults.
TLS 1.3 in Transit
All web traffic and agent telemetry is strictly enforced over TLS 1.3 to ensure data integrity and confidentiality across untrusted networks.
We practice what we preach.
The Retrievy platform itself undergoes the same rigorous hardening standards that we expect our tool to enforce on your infrastructure.
-
Enterprise SSO & Identity Access to your Retrievy dashboard is governed by your own Identity Provider. We support seamless Microsoft Entra ID (OAuth) integration to enforce your existing Conditional Access and MFA policies.
-
Immutable Audit Trails "Trust but verify" applies to our platform too. Every action—from acknowledging a Tactical Drift Alert to modifying an SLA exception—is immutably logged for non-repudiation.
-
Rate Limiting & Abuse Prevention All authentication endpoints, API gateways, and webhook receivers are strictly rate-limited at the infrastructure edge to automatically blunt brute-force attempts and state-fuzzing scripts.
Ready to secure your posture?
Deploy Retrievy with confidence. Your data is protected at every level.
Get StartedTry everything free for 14 days on your own data. Request your trial code. No credit card required.