T
twinkodeTYPEMASH
Security

Security is part of the architecture.

TypeMash is designed around tenant isolation, least privilege, and explicit boundaries between application, data and infrastructure.

Tenant isolation and permissions

The service uses granular roles/permissions, database policies and organization boundaries, with protected standard roles and anti-escalation controls.

Data and financial integrity

Workflow integrity, numbering, and issued financial-document rules are enforced server-side and in the database rather than relying on the UI alone.

Encryption and secrets

Production requires encrypted transport, secrets kept out of source code, and separate least-privilege identities for services and the database.

Backup, recovery and monitoring

The production architecture includes health checks, monitoring, backups, restore testing, and incident procedures.

Ask TypeMash

The assistant is read-only, remains subject to the same user permissions and tenant boundary, and uses server-side credentials plus usage limits.

Reporting a security issue

Report security issues privately to support@twinkode.com and do not include customer data or access credentials in a public report.

This page does not claim a security or compliance certification that Twinkode has not formally obtained.