Observability is part of the product. Security-relevant activity is recorded in the database, and platform health is monitored through the hosting and database platforms.
Security audit log
- Authentication, MFA and account-lifecycle events are written to an append-only audit table.
- Records are protected against modification and deletion at the database level.
- Audit data is retained on a defined horizon and purged automatically afterwards.
Operational monitoring
- Runtime errors are captured for engineering review.
- Database and API performance are monitored on the managed platform.
- Anomalies such as repeated failed sign-ins are visible through throttling counters.
Questions about this area?
Our team answers security questionnaires and reviews. Write to security@matsivo.com.