Security

Secure and privacy-minded by design

KMS-encrypted credentials, audit logging, GDPR rights, and ISO 27001-aligned controls support the trust story.

Privacy posture

Customer data is handled with privacy, control, and auditability as first-order product concerns.

Encryption

Traffic is encrypted in transit, and sensitive credentials are KMS-encrypted at rest.

Access and audit

Authentication, MFA support, structured audit logging, and least-privilege operations.

Rights and controls

Export, rectification, erasure with grace period, and ISO 27001-aligned controls.

Infrastructure

Built to scale and stay reliable

Managed cloud infrastructure

MyCeto runs on Amazon Web Services in the Europe (Ireland) region (eu-west-1), built from managed services: Aurora PostgreSQL, S3 storage, Cognito identity, KMS encryption, and Bedrock for AI inference.

Scales with demand

Elastic, managed AWS services let the platform grow with usage, so responsiveness holds steady as your aquarium data and the wider user base expand.

Resilience and backups

The managed database keeps automated backups, and core services run across multiple availability zones within the region to absorb individual hardware failures.

Monitoring and recovery

Structured logging and monitoring give clear visibility into the running platform and support a prompt, orderly response to any incident.

Data residency by design

Databases, file storage, AI inference, and logs stay within the AWS Europe (Ireland) region (eu-west-1), inside the EEA, enforced at runtime rather than left to configuration.

GDPR and data protection

MyCeto is built to comply with the GDPR, with all personal data held in the EEA. You keep export, rectification, and erasure rights over your data.

Standards-aligned controls

Security controls are aligned to ISO 27001. We say aligned, not certified, until certification is formally held.

Start free

Build your aquarium twin with no credit card required