Anvil
Security and data handling.
Anvil is being built around tenant isolation, role-based access, auditability, and careful handling of customer/member data.
Security principles
- Tenant data should be isolated by design.
- Staff access should be role-based and least-privilege.
- Sensitive actions should be auditable.
- Payment card data should be handled by a dedicated payment provider, not stored by Anvil.
Product direction
- Tenant-scoped data model.
- Audit logs for create, update, delete, and sensitive operational events.
- Planned tenant-aware identity and roles.
- Azure-first production direction with managed storage, database, secrets, and telemetry.
Compliance status
Anvil is not currently SOC 2 certified and is not positioned as HIPAA-compliant unless explicitly scoped later. Payment integration should minimize PCI scope by using a dedicated payment provider.