Supabase SSR authentication
Sessions are resolved server-side using secure cookie-based authentication patterns.
Trust center
Flowtix uses server-side authorization and organization-scoped database policies. External carrier, AI, and storage providers must be reviewed and configured separately before production use.
Sessions are resolved server-side using secure cookie-based authentication patterns.
PostgreSQL policies scope supported application data to authorized organization members.
Workspace roles and server-side checks limit sensitive administrative operations.
Private credentials belong in server-side environment variables and are not committed to source control.
Only collect and retain information necessary for legitimate product and customer workflows.
Report suspected vulnerabilities through the contact page without including active secrets or unnecessary personal data.