Security

Secure defaults, without vague promises.

Transend treats security as product behavior: scoped access, deliberate secret handling, encrypted connections, and clear operational state.

Access is workspace-scoped

Owner, admin, member, and viewer roles keep privileged actions limited to the people who need them.

Secrets stay short-lived

API keys are shown once. Database and cache credentials are revealed on demand and cleared when you leave the page.

Encrypted connections

Email, Postgres, and Cache interfaces are designed around authenticated TLS connections.

Operational visibility

Service state, delivery events, backup verification, and credential-rotation progress remain visible in the control plane.

Report a vulnerability

Please share suspected vulnerabilities privately. Include reproduction steps and avoid accessing data that is not yours.

Send a private report

Availability and assurance

Current incidents and maintenance appear on the public status page. Certifications and audit reports will be listed here when they are available—we do not imply controls that have not been independently verified.

View service status