SPCSEARPERMIT OS
SECURITY & TRUST

The permit record is only useful if contractors can trust it.

SPCSEAR separates tenants, roles, evidence, payments, governance, and operator access so one shortcut cannot silently become a customer outcome.

✓

Managed identity

MFA-capable WorkOS authentication, short-lived tokens, signed webhooks, and durable reconciliation.

✓

Tenant isolation

PostgreSQL row-level security is forced on customer tables and runtime roles are verified independently.

✓

Evidence integrity

Important records are append-only, checksummed, versioned, and tied to the actor and request.

✓

Document safety

Uploads are quarantined, type and size constrained, malware-scanned, encrypted, and retained by policy.

✓

Payment boundary

Hosted checkout keeps card data out of SPCSEAR systems; provider events are signed and idempotent.

✓

Operational accountability

Alerts, acknowledgements, dead letters, recovery actions, and publication decisions remain auditable.

RESPONSIBLE DISCLOSURE

Report a security concern privately.

Do not include customer documents, credentials, or sensitive personal information in an initial report. Provide the affected surface, reproduction steps, and potential impact.

security@tradepermit.com