Security
Enterprise controls from day one
SendDox is designed with operational controls for document governance, secure API usage, and verifiable auditability.
- Workspace tenancy isolation and role-based access controls (Owner/Admin/Member)
- Immutable activity events, audit exports, checksum verification, and signed evidence bundles
- Webhook trust policy with IP allowlisting and mTLS enforcement
- Rate limiting on auth, signing, API-key, and audit endpoints
- Request ID propagation and health/readiness observability endpoints