In transit: HTTPS everywhere
The browser talks to the platform over HTTPS, and the platform talks to itself encrypted: exchanges between services, message queues and database connections all go through encrypted channels. Obsolete TLS versions are refused.
- HTTPS required on the application, the portal and the API
- Obsolete TLS versions refused
- Encrypted inter-service exchanges and message queues
- Encrypted database connections