Skip to Content
Security & ComplianceSecurity Overview

Security & Compliance

AD Unlock is designed with enterprise security requirements in mind.

Security Principles

Zero Trust

  • Every request requires identity verification
  • No implicit trust based on network location
  • All operations logged and auditable

Defense in Depth

  • Multiple layers of security controls
  • mTLS for connector authentication
  • Encryption for sensitive data
  • Row Level Security in database

Least Privilege

  • Service account has minimal required permissions
  • Denied groups block privileged accounts
  • Connector can only perform allowed operations

Security Topics

Quick Facts

AspectImplementation
TransportTLS 1.3, mTLS for connectors
AuthenticationOAuth2/OIDC (Azure AD/Google)
EncryptionAES-256-GCM, RSA-OAEP
Data IsolationRow Level Security (PostgreSQL)
Audit TrailImmutable, tamper-evident
Password HandlingNever stored, email-only delivery

Compliance

AD Unlock supports compliance with:

  • SOC 2 Type II
  • ISO 27001
  • GDPR
  • LGPD

Contact support@adunlock.me for compliance documentation.

Last updated on