DocsSecurity

Security

Security advantages are a critical benefit of CrystalDB’s cloud native architecture. Each database runs in an isolated virtual machine, ensuring isolation between customer workloads, even in a multi-tenant environment. We encrypt all stored data with a unique key before it leaves the virtual machine, which is stored securely in a key management system (KMS). We also require all client connections on the PostgreSQL wire protocol to be encrypted with TLS.

CrystalDB handles security patches for the database and the underlying operating system, eliminating many worries. Your team is still responsible for patching the application code.

Our security posture also includes a range of best practices. We are working towards SOC2 certification, which we expect to complete before the product’s general availability.

To report any security concerns, please contact security@crystaldb.cloud.