These are the controls implemented by the product today, together with the boundaries administrators need to understand.
Device capture requires an explicit purpose, approved sources, and a user action before it starts.
A device cannot approve itself. Organization administrators control roles and device capabilities.
Device graph events are signed with a per-device Ed25519 identity and checked before ingestion.
Stored integration credentials use tenant- and purpose-bound AES-256-GCM envelopes with versioned keys.
Ask for the current control description, data flow, and deployment-specific terms.