Tenant isolation
A separate database for each tenant with defined hostname routing.
Security and data
ARMADA uses tenant data isolation, default-deny access, an event trail, and posted documents that preserve history. Hosting, backup, and response responsibilities are defined for each environment in the contract.
A separate database for each tenant with defined hostname routing.
An absent permission rejects the action instead of silently allowing it.
Permissions know the relevant company, branch, and scope.
Important events use identifiers that support traceability and prevent duplicate effects.
Correction uses reversal or a new document so history remains auditable.
Every write checks record version, while critical operations lock their transaction.
Failures retry through a controlled path and move to review instead of silent deletion.
Every collected field needs a defined purpose.
Periods are defined legally and contractually by data type and purpose.
Names, phone numbers, and email addresses are not sent to general analytics tools.
Hosting location, domains, and operating responsibilities.
A documented policy and recovery test for the specific environment.
Escalation channels, roles, and an incident record.
These controls do not represent a security certification or regulatory compliance unless the approval is named and evidenced in the contract.
Frequently asked questions
The design uses isolation, default denial, scoped permissions, and an event trail. Actual environment, backup, and retention details are presented in a technical review before contracting, without unverified certification claims.