Security

Customer custody, fail-closed controls, and restrained evidence handling.

GeoCordon is designed for deployments where policy, secrets, audit records, and operational decisions must stay under customer control.

Customer-operated governance for outbound data policy, audit evidence, and local operational control.

Version 1.0.0-rc.1

Customer custody

The runtime does not require a hosted license server, telemetry callback, or remote management service for documented operation.

  • Local secrets
  • Local audit storage
  • Local administrator sessions

Fail-closed posture

Enabled controls fail closed when required configuration, policy, audit, or entitlement inputs are invalid or unavailable.

  • Policy load validation
  • Readiness gating
  • Explicit denial states

Public-private boundary

Public routes describe the product. They do not expose administrator data, audit contents, internal planning material, credentials, or runtime configuration.

  • No public admin data
  • No raw customer payloads
  • No private documentation catalog