Security is foundational to our platform. We understand that ML models and training data are among your most valuable assets, and we've built TensorSync with security as a first-class concern.
All data is encrypted using TLS 1.3. We enforce HTTPS for all API endpoints and support modern cipher suites only.
Every request is authenticated and authorized. We use mTLS for service-to-service communication and API keys for client authentication.
Our infrastructure runs on hardened, minimal container images. We perform regular vulnerability scans and penetration testing.
Comprehensive audit logs track all API access, synchronization events, and administrative actions. Logs are retained for 1 year.
Multi-tenant architecture ensures complete data isolation between customers. Your tensors never mix with other users' data.
We use Cloudflare's enterprise DDoS protection to ensure service availability even under attack.
We're committed to meeting industry standards:
We appreciate the security research community's efforts in keeping TensorSync secure. If you discover a vulnerability, please report it responsibly.
Email us at security@tensorsync.xyz with:
If you've discovered a critical vulnerability that's actively being exploited, please call our emergency hotline:
+1 (415) 555-0199 (24/7)
Or email security@tensorsync.xyz with "URGENT" in the subject line.
We publish security advisories on our blog and through our status page. Subscribe to stay informed about security patches and best practices.
To maximize security when using TensorSync: