Multi-tenant architecture
Tenant isolation is the first decision, not a refactor. We pick between row-level security, a tenant column and schema-per-tenant on the shape of your data and your compliance obligations.
- PostgreSQL row-level security enforced fail-closed
- Tenant-scoped caching, queues and background jobs
- Per-tenant data export and deletion for GDPR requests


