Platform Integrity Standards
Detailed documentation of the security controls and operational protocols maintained to protect the Wrybe ecosystem and its users.
Platform Infrastructure
Our backend is hosted exclusively on AWS, utilizing strictly isolated VPCs and software-defined networking.
- AWS Region-Specific Isolation
- Cloudflare Edge WAF Protection
- DDoS Mitigation Protocols
- Automated Patching & Hardening
Data Protection
Strict cryptographic standards are applied to all sensitive information at rest and during transit.
- AES-256 (KMS Managed) at Rest
- Mandatory TLS 1.3 / 1.2 in Transit
- Encrypted Cross-Region Backups
- Secure Salted Password Hashing
Internal Access Control
We utilize a Zero-Trust model where no internal request is trusted by default, regardless of source.
- Hardware Security Keys (MFA)
- Role-Based Access Control (RBAC)
- Just-In-Time (JIT) Privileges
- Full Audit Logging of Admin Events
Cryptographic Identity Management
Security is standardized across all services. Every endpoint within the Wrybe network is automatically provisioned with managed SSL/TLS certificates through automated lifecycle management.
-
Automated Certificate Rotation Integration with Let's Encrypt and Google Trust Services ensures no expired identities.
-
Strict HSTS Policies Forcing encrypted connections for all internal and customer-facing interfaces.
Employee Device Security Requirements
Our remote-first operational model requires that all employee devices used for platform management meet specific hardware-level security mandates.
M3 Silicon Standard
Wrybe mandates the use of Apple Silicon (M3 series or higher) for internal development and administration to utilize hardware-isolated Secure Enclaves.
Biometric Authentication
Touch ID is a hardware requirement for device login and for authorizing sudo-level commands on all employee machines.
Managed Compliance
Devices are enrolled in Mobile Device Management (MDM) with mandatory FileVault encryption and restricted software installation policies.
Security Inquiries & Responsible Disclosure
For technical security questions, compliance documentation requests, or to report a potential vulnerability, please reach out to our team.