Privacy posture
Customer data is handled with privacy, control, and auditability as first-order product concerns.
Security
KMS-encrypted credentials, audit logging, GDPR rights, and ISO 27001-aligned controls support the trust story.
Customer data is handled with privacy, control, and auditability as first-order product concerns.
Traffic is encrypted in transit, and sensitive credentials are KMS-encrypted at rest.
Authentication, MFA support, structured audit logging, and least-privilege operations.
Export, rectification, erasure with grace period, and ISO 27001-aligned controls.
Infrastructure
MyCeto runs on Amazon Web Services in the Europe (Ireland) region (eu-west-1), built from managed services: Aurora PostgreSQL, S3 storage, Cognito identity, KMS encryption, and Bedrock for AI inference.
Elastic, managed AWS services let the platform grow with usage, so responsiveness holds steady as your aquarium data and the wider user base expand.
The managed database keeps automated backups, and core services run across multiple availability zones within the region to absorb individual hardware failures.
Structured logging and monitoring give clear visibility into the running platform and support a prompt, orderly response to any incident.
Databases, file storage, AI inference, and logs stay within the AWS Europe (Ireland) region (eu-west-1), inside the EEA, enforced at runtime rather than left to configuration.
MyCeto is built to comply with the GDPR, with all personal data held in the EEA. You keep export, rectification, and erasure rights over your data.
Security controls are aligned to ISO 27001. We say aligned, not certified, until certification is formally held.
Start free