Security
Device Security
Sensedge Go Our wireless Sensedge Go is built around a dedicated hardware secure element with a NIST SP 800-90 compliant entropy source. Cryptographic keys are generated and used entirely on-chip — they cannot be read out, even with physical access.
Secure Communications
Cloud Security
Data Privacy and Residency
All operational and environmental data is stored exclusively in AWS facilities in Germany. Data does not cross regional boundaries.
Kaiterra maintains a GDPR program with a designated Data Protection Officer, a published Data Processing Agreement, and a 72-hour breach notification commitment.
Customer data is logically isolated at the application layer. Cross-tenant access is explicitly tested as part of every penetration test.
Application Security
All database queries use parameterized statements. User input is validated by length, type, structure, and range. Output is sanitized and encoded to prevent cross-site scripting.
The Kaiterra Data Platform sets HSTS, X-Frame-Options, and Content Security Policy headers to defend against clickjacking, mixed-content attacks, and code injection in the browser.
All state-changing requests are protected with anti-CSRF tokens.
Account Security
API Security
Resilience and Recovery
Online backups are retained for 30 days. Offline backups are stored in a separate AWS account and retained for 180 days, isolating them from the production environment.
Compliance and Trust
Critical and high-severity findings are remediated within 30 days. Medium findings within 90 days. Zero-days trigger an immediate assessment and patch cycle.
At Kaiterra, your trust is our priority. If you have any questions
regarding Kaiterra's security posture, please contact our team. We're happy to walk through any of the above in more detail or provide documentation under NDA.
