Autonemo Limited · Trust & Security

Security & Infrastructure

Our platform is built with enterprise-grade security, modern infrastructure, and industry best practices to ensure the confidentiality, integrity, and availability of customer data.

HTTPS / SSL Encryption Singapore Datacenter Automated Backups 24/7 Monitoring
STACK

Technology Stack

Built on a modern, proven, and actively maintained open-source technology stack.

PHP
Laravel
MySQL
Bootstrap 5
JavaScript
Nginx
Linux
Git
Let’s Encrypt SSL
01

Infrastructure

Enterprise-grade hosting engineered for performance, resilience, and low-latency regional access.

Singapore-based VPS / Dedicated Servers

Hosted in a Singapore Tier-3 datacenter for reliable, low-latency regional performance.

Enterprise Linux Servers

Hardened, long-term-support Linux builds tuned for production workloads.

NVMe SSD Storage

High-throughput NVMe storage for fast database and application response.

High-Speed Network Connectivity

Redundant, high-bandwidth links for consistent uptime and throughput.

Regular Security Updates

Scheduled OS and package patching to close known vulnerabilities quickly.

02

Application Security

Security is built into the application layer using the Laravel framework and defence-in-depth practices.

Laravel Framework Security

Built on Laravel’s actively maintained, security-focused framework.

CSRF Protection

Every state-changing request is verified with anti-CSRF tokens.

SQL Injection Protection

Parameterized queries through the Eloquent ORM prevent injection.

XSS Protection

Blade escapes output by default to block script injection.

Secure Authentication

Guard-based authentication with configurable access policies.

Password Hashing (bcrypt / Argon2)

Credentials are stored using strong, salted bcrypt/Argon2 hashing.

Role-Based Access Control (RBAC)

Granular module and action permissions per user role.

Secure Session Management

Encrypted, HTTP-only session cookies with strict lifetimes.

03

Data Protection

Customer data is protected in transit and at rest with strict access and configuration controls.

HTTPS / SSL Encryption

All traffic is encrypted in transit with TLS/SSL.

Encrypted Password Storage

Passwords are never stored in plain text.

Secure Configuration Management

Secrets live in environment configuration, outside the codebase.

Database Access Restrictions

Databases are firewalled and reachable only by the application layer.

Data Isolation

Company-scoped separation keeps each tenant’s records isolated.

04

Network Security

The network perimeter is locked down to the minimum surface required to run the platform.

Firewall Protection

Host and network firewalls restrict traffic to trusted paths.

Limited Open Ports

Only essential service ports are exposed to the internet.

SSH Secure Access

Key-based SSH access with password login disabled.

Brute Force Protection

Rate limiting and lockouts defend login and API endpoints.

Server Monitoring

Continuous monitoring flags anomalous network activity.

05

Backup & Recovery

Automated, verified backups and documented recovery procedures protect against data loss.

Automated Backups

Scheduled automated backups of databases and critical files.

Disaster Recovery Procedures

Documented playbooks for rapid, reliable restoration.

Backup Integrity Verification

Backups are validated to ensure they are restorable.

Secure Backup Storage

Backups are stored securely and access-controlled.

06

Monitoring

The platform is observed continuously so issues are detected and resolved before they impact users.

24/7 Infrastructure Monitoring

Round-the-clock monitoring of servers and services.

Performance Monitoring

Response time and resource usage are tracked continuously.

Error Monitoring

Application errors are captured and triaged proactively.

System Health Monitoring

CPU, memory, disk, and uptime health checks.

Security Log Monitoring

Audit and security logs are retained and reviewed.

07

Development Practices

Disciplined engineering practices keep changes safe, reviewable, and reversible.

Git Version Control

All code changes are tracked and reviewed in Git.

Production & Staging Separation

Isolated environments keep untested code out of production.

Secure Deployment Process

Controlled, repeatable deployments with rollback capability.

Regular Maintenance

Ongoing dependency and platform maintenance.

Continuous Improvements

Iterative security and performance enhancements.

08

Compliance & Best Practices

We follow recognised security standards and engineering principles throughout the platform lifecycle.

OWASP Top 10 Best Practices
HTTPS Everywhere
Principle of Least Privilege
Secure Coding Standards
Regular Security Updates
FAQ

Frequently Asked Questions

Customer data is hosted on secure VPS / dedicated servers in a Singapore-based Tier-3 datacenter, running enterprise Linux with NVMe SSD storage and redundant high-speed networking.

Data is protected with TLS/SSL encryption in transit, hashed credential storage, database access restrictions, company-level data isolation, firewalls, and continuous monitoring across the stack.

Passwords are never stored in plain text. They are hashed with strong, salted algorithms (bcrypt / Argon2) provided by the Laravel framework, so original passwords cannot be recovered.

Automated backups run on a regular schedule, are stored securely with restricted access, and their integrity is verified so they can be reliably restored when needed.

Production access is limited to authorized technical staff over key-based SSH under the principle of least privilege. Access is logged, monitored, and reviewed.

Need additional security documentation?

Reach out for infrastructure details, deployment architecture, and security questionnaires.