Audit logging + token rotation + SOC2-lite controls #42

Open
opened 2026-04-13 14:23:21 +00:00 by alvis · 0 comments
Owner

Append-only audit log for privileged actions. Automatic rotation of provider tokens and internal signing keys. Access reviews quarterly.

Append-only audit log for privileged actions. Automatic rotation of provider tokens and internal signing keys. Access reviews quarterly.
alvis added this to the M5 — Production hardening milestone 2026-04-13 14:23:21 +00:00
alvis added the platform label 2026-04-13 14:23:21 +00:00
Sign in to join this conversation.
1 Participants
Notifications
Due Date
No due date set.
Dependencies

No dependencies set.

Reference: alvis/oO#42