Security Policy
Last updated 5 August 2026.
Application security
Dashboard Grid uses company-scoped data access, ASP.NET Identity password hashing, confirmed email, role authorization, lockout, antiforgery validation, secure cookie settings, rate limiting and security headers. Sensitive production traffic must use HTTPS.
Operational controls
Authentication and administrative actions are recorded in audit logs. Health monitoring, support tickets and maintenance controls help operators identify and respond to service issues.
Customer responsibilities
Use unique passwords, restrict administrators, remove access promptly, validate uploaded data and configure only trusted sources. Report suspected security issues through support.
Production responsibilities
The operator must configure secret storage, TLS certificates, monitored backups, restore testing, dependency patching, incident response, vulnerability testing and applicable compliance controls before accepting production customer data.
Contact support@dashboardgrid.app or use the authenticated support center.