Is Dryvn traffic encrypted?+
Yes. Public application traffic uses HTTPS with managed certificates and TLS 1.2 as the minimum supported protocol. TLS 1.3 is also supported, while TLS 1.0 and TLS 1.1 are rejected.
Does the Dryvn API have a public IP?+
The application workload does not use a public IP. Public traffic terminates at the HTTPS load-balancing edge before reaching private application networking.
Is the database publicly accessible?+
No. Production Cloud SQL uses private addressing with public IPv4 access disabled.
How does Dryvn isolate tenant data?+
Dryvn combines authenticated tenant context, application authorization, restricted database roles, and PostgreSQL Row-Level Security so tenant isolation does not depend on one layer.
What is Row-Level Security?+
PostgreSQL Row-Level Security applies database policies that reinforce which tenant rows a database session may access. It complements rather than replaces application authorization.
Where are secrets stored?+
Production secrets and credentials are managed in Google Cloud Secret Manager with resource-scoped access, controlled rotation, and retirement of superseded versions.
How does Dryvn authenticate deployments to Google Cloud?+
Production deployment pipelines use Workload Identity Federation instead of static Google Cloud deployment keys.
Does Dryvn support SAML SSO?+
Yes. SAML-based SSO is available for organizations that require centralized enterprise authentication and identity-provider integration.
Does Dryvn use Cloud Armor?+
Yes. Cloud Armor provides managed web-application firewall protections and edge rate controls in front of public API traffic.
Does Dryvn scan software before deployment?+
Yes. The release baseline includes dependency analysis, static security checks, artifact vulnerability scanning, and deployment security gates.
Does Dryvn maintain backups?+
Yes. The production baseline includes automated Cloud SQL backups, point-in-time recovery, deletion protection, backup monitoring, Firestore recovery protection, and documented recovery procedures.
Does Dryvn support dedicated infrastructure?+
Yes. Organizations with additional infrastructure-isolation requirements can choose dedicated application, database, and network boundaries with scoped operational controls.
Can Standard or Pro customers use dedicated infrastructure?+
Yes. Eligible Standard and Pro customers can add dedicated infrastructure at a discounted infrastructure rate. The discount amount is scoped commercially and is not asserted on this page.
Does dedicated infrastructure mean shared Dryvn is less secure?+
No. Shared Dryvn uses private networking, application authorization, restricted database roles, RLS, least-privilege identities, and multiple tenant boundaries. Dedicated infrastructure adds another boundary for organizations whose policies require it.
Does Dryvn hold SOC 2 or ISO certification?+
Dryvn does not claim a certification until the relevant independent certification or audit has been completed.