Home / Platform / Security
Compliance · SOC2 + ISO

Audit posture for nodejs, by default.

Adensabais applies supply-chain verification, runtime isolation, and tamper-evident logs to every node-js workload that runs on the platform.

Request a Technical Demo →
SOC2 · Type IIISO · 27001:2022Logs · 365 daysEncryption · AES-256-GCM
// Supply chain

Signed packages

Every npm dependency is verified against a Sigstore attestation before it touches a node js worker.

// Runtime

Isolate sandboxing

Workers run in V8 isolates with capability-scoped FS and network policies.

// Identity

Workload identity

Short-lived SPIFFE identities — no static credentials inside the runtime.

// Logs

Tamper-evident

Append-only Merkle log of every control-plane event, exportable on demand.

// Network

Zero-trust mesh

mTLS between all nodejs services with rotating workload certificates.

// Audit

Evidence on demand

One click exports SOC2 evidence packages scoped to a date range.

Customer auditors are welcome to inspect the Adensabais control plane under NDA. Contact corporate@adensabais.life from our Seattle office.